Description
A vulnerability, which was classified as problematic, was found in SourceCodester Online Eyewear Shop 1.0. Affected is an unknown function of the file /admin/?page=inventory/view_inventory&id=2. The manipulation of the argument Code leads to cross site scripting. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used.
References
https://gist.github.com/higordiego/1c1e1709a6832cb63bbe9e9328f55ff9
ExploitThird Party Advisory
https://vuldb.com/?ctiid.280182
Permissions Required
Third Party Advisory
https://vuldb.com/?submit.422612
Third Party Advisory
CVSS impact metrics
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:N
3.5 · Low
Information
Source identifier
Vulnerability status
Analyzed
Published
2024-10-13T02:15:02.473Z
1 year agoLast modified
2024-10-16T20:12:07.520Z
1 year ago