PT-2025-47171 · Unknown · Kashipara Hotel Management System

Published

2025-11-17

·

Updated

2025-11-17

·

CVE-2024-46336

CVSS v3.1

6.1

Medium

VectorAV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
Name of the Vulnerable Software and Affected Versions kashipara School Management System version 1.0
Description The software is susceptible to Cross Site Scripting (XSS) attacks. The issue is located in the /client user/feedback.php endpoint. An attacker could potentially inject malicious scripts into the application through this endpoint. The feedback.php file is vulnerable.
Recommendations Apply any available updates to address the issue in the feedback.php file. As a temporary workaround, consider restricting access to the /client user/feedback.php endpoint until a patch is available.

Exploit

Fix

XSS

Weakness Enumeration

Related Identifiers

CVE-2024-46336

Affected Products

Kashipara Hotel Management System