Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2023-23022


Cross site scripting (XSS) vulnerability in sourcecodester oretnom23 employee's payroll management system 1.0, allows attackers to execute arbitrary code via the code, title, from_date and to_date inputs in file Main.php.


Published

2024-05-01T19:15:21.073

Last Modified

2025-03-26T21:15:18.500

Status

Modified

Source

[email protected]

Severity

CVSSv3.1: 6.1 (MEDIUM)

Weaknesses
  • Type: Primary
    CWE-79
  • Type: Secondary
    CWE-79

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application oretnom23 employees_payroll_management_system 1.0 Yes

References