RSS   Vulnerabilities for 'Tailor management system'   RSS

2021-11-08
 
CVE-2021-40260

CWE-79
 

 
Multiple Cross Site Scripting (XSS) vulnerabilities exist in SourceCodester Tailor Management 1.0 via the (1) eid parameter in (a) partedit.php and (b) customeredit.php, the (2) id parameter in (a) editmeasurement.php and (b) addpayment.php, and the (3) error parameter in index.php.

 
2020-09-01
 
CVE-2020-23835

CWE-79
 

 
A Reflected Cross-Site Scripting (XSS) vulnerability in the index.php login-portal webpage of SourceCodester Tailor Management System v1.0 allows remote attackers to harvest keys pressed by an unauthenticated victim who clicks on a malicious URL and begins typing.

 


Copyright 2024, cxsecurity.com

 

Back to Top