Medium severity6.1NVD Advisory· Published Dec 15, 2025· Updated Jun 17, 2026
CVE-2023-36337
CVE-2023-36337
Description
A reflected cross-site scripting (XSS) vulnerability in the component /index.php/cuzh4 of PHP Inventory Management System 1 allows attackers to execute arbitrary web scripts or HTML via a crafted payload.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- cpe:2.3:a:inventory_management_system_project:inventory_management_system:1.0:*:*:*:*:*:*:*
Patches
Vulnerability mechanics
References
2- gist.github.com/nguyenkhanhthuan/f345c8ea0551c10ead197680f2ba9c66nvdExploitThird Party Advisory
- github.com/ThuanNguyen115685/Report/blob/main/XSS.mdnvdBroken Link
News mentions
0No linked articles in our index yet.