CWE-79 XSS in Hostel Management System v2.1 Book Hostel page
CVE-2023-36375 Published on July 10, 2023

Cross Site Scripting vulnerability in Hostel Management System v2.1 allows an attacker to execute arbitrary code via a crafted payload to the Guardian name, Guardian relation, complimentary address, city, permanent address, and city parameters in the Book Hostel & Room Details page.

NVD


Products Associated with CVE-2023-36375

stack.watch emails you whenever new vulnerabilities are published in Hostelmanagementsystemproject Hostel Management System or PHPGurukul Hostel Management System. Just hit a watch button to start following.

 
 

Exploit Probability

EPSS
0.17%
Percentile
38.38%

EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.