Description
A stored XSS vulnerability exists in Web-School ERP V 5.0 via (Add Events) in the event name and description fields. An attack can inject a JavaScript code that will be stored in the page. If any visitor sees the events, then the payload will be executed.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2021-17051 | A stored XSS vulnerability exists in Web-School ERP V 5.0 via (Add Events) in the event name and description fields. An attack can inject a JavaScript code that will be stored in the page. If any visitor sees the events, then the payload will be executed. |
References
History
No history.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-03T22:24:59.625Z
Reserved: 2021-04-02T00:00:00.000Z
Link: CVE-2021-30111
No data.
Status : Modified
Published: 2021-04-08T12:15:12.540
Modified: 2024-11-21T06:03:19.497
Link: CVE-2021-30111
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD