Medium severity4.3NVD Advisory· Published Apr 9, 2022· Updated Jun 17, 2026
CVE-2022-1288
CVE-2022-1288
Description
A vulnerability, which was classified as problematic, has been found in School Club Application System 1.0. This issue affects access to /scas/admin/. The manipulation of the parameter page with the input %22%3E%3Cimg%20src=x%20onerror=alert(1)%3E leads to a reflected cross site scripting. The attack may be initiated remotely and does not require any form of authentication. The exploit has been disclosed to the public and may be used.
Affected products
3- cpe:2.3:a:school_club_application_system_project:school_club_application_system:1.0:*:*:*:*:*:*:*
- Range: <=1.0
- unspecified/School Club Application Systemv5Range: 1.0
Patches
Vulnerability mechanics
References
1- vuldb.comnvdThird Party Advisory
News mentions
0No linked articles in our index yet.