CVE-2021-27544 in Phpgurukulbeautyparlourmanagementsystemproject and PHPGurukul Products
Published on April 15, 2021
Cross Site Scripting (XSS) in the "add-services.php" component of PHPGurukul Beauty Parlour Management System v1.0 allows remote attackers to execute arbitrary code by injecting arbitrary HTML into the "sername" parameter.
Products Associated with CVE-2021-27544
stack.watch emails you whenever new vulnerabilities are published in Phpgurukulbeautyparlourmanagementsystemproject Phpgurukul Beauty Parlour Management System or PHPGurukul Beauty Parlour Management System. Just hit a watch button to start following.
Exploit Probability
EPSS
0.35%
Percentile
56.85%
EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.