Medium severity4.8NVD Advisory· Published Mar 31, 2021· Updated Jun 17, 2026
CVE-2021-29663
CVE-2021-29663
Description
CourseMS (aka Course Registration Management System) 2.1 is affected by cross-site scripting (XSS). When an attacker with access to an Admin account creates a Job Title in the Site area (aka the admin/add_jobs.php name parameter), they can insert an XSS payload. This payload will execute whenever anyone visits the registration page.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
4- cpe:2.3:a:course_registration_management_system_project:course_registration_management_system:2.1:*:*:*:*:*:*:*
(expand)+ 1 more
- (no CPE)
- (no CPE)range: =2.1
Patches
Vulnerability mechanics
References
2- github.com/cptsticky/A-0day-Per-Day-Keeps-The-Cope-Away/blob/main/CVE-2021-29663nvdExploitThird Party Advisory
- sourceforge.net/projects/coursemsnvdProductThird Party Advisory
News mentions
0No linked articles in our index yet.