Low severity3.5NVD Advisory· Published Mar 17, 2025· Updated Jun 17, 2026
CVE-2025-2377
CVE-2025-2377
Description
A vulnerability was found in SourceCodester Vehicle Management System 1.0 and classified as problematic. Affected by this issue is some unknown functionality of the file /confirmbooking.php. The manipulation of the argument id leads to cross site scripting. The attack may be launched remotely. The exploit has been disclosed to the public and may be used. The initial researcher advisory mentions contradicting product names.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- Range: = 1.0
- Range: 1.0
- cpe:2.3:a:janobe:vehicle_management_system:1.0:*:*:*:*:*:*:*
Patches
Vulnerability mechanics
References
5- github.com/Keyand/Multi-Restaurant-Table-Reservation-System-Search/blob/main/Vehicle%20Management%20System%20confirmbooking.php%20has%20Cross-site%20Scripting%20(XSS).pdfnvdExploitThird Party Advisory
- vuldb.comnvdThird Party AdvisoryVDB Entry
- vuldb.comnvdThird Party AdvisoryVDB Entry
- vuldb.comnvdPermissions RequiredVDB Entry
- www.sourcecodester.comnvdProduct
News mentions
0No linked articles in our index yet.