Medium severity5.4NVD Advisory· Published Oct 20, 2022· Updated Jun 17, 2026
CVE-2022-41358
CVE-2022-41358
Description
A stored cross-site scripting (XSS) vulnerability in Garage Management System v1.0 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the categoriesName parameter in createCategories.php.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- cpe:2.3:a:garage_management_system_project:garage_management_system:1.0:*:*:*:*:*:*:*
- Garage Management System/Garage Management Systemdescription
- Range: =1.0
Patches
Vulnerability mechanics
References
5- packetstormsecurity.com/files/168718/Garage-Management-System-1.0-Cross-Site-Scripting.htmlnvdExploitThird Party AdvisoryVDB Entry
- cxsecurity.com/issue/WLB-2022100037nvdExploitIssue TrackingThird Party Advisory
- www.samwallace.dev/research/Stored%20XSS%20in%20GMS%201.0nvdExploitThird Party Advisory
- vulmon.com/vulnerabilitydetailsnvdThird Party Advisory
- www.sourcecodester.com/php/15485/garage-management-system-using-phpmysql-source-code.htmlnvdProduct
News mentions
0No linked articles in our index yet.