Unrated severityNVD Advisory· Published Apr 2, 2023· Updated Nov 22, 2024
SourceCodester Employee Payslip Generator Create News cross site scripting
CVE-2023-1796
Description
A vulnerability classified as problematic has been found in SourceCodester Employee Payslip Generator 1.0. Affected is an unknown function of the file /classes/Master.php?f=save_position of the component Create News Handler. The manipulation of the argument name with the input leads to cross site scripting. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-224748.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
2<= 1.0+ 1 more
- (no CPE)range: <= 1.0
- (no CPE)range: 1.0
Patches
Vulnerability mechanics
References
3- github.com/Jean-Astruc/bug_report/blob/main/XSS-1.mdmitreexploit
- vuldb.commitresignaturepermissions-required
- vuldb.commitrevdb-entrytechnical-description
News mentions
0No linked articles in our index yet.