mirror of
https://github.com/CVEProject/cvelist.git
synced 2025-07-29 05:56:59 +00:00
101 lines
3.5 KiB
JSON
101 lines
3.5 KiB
JSON
![]() |
{
|
||
|
"data_version": "4.0",
|
||
|
"data_type": "CVE",
|
||
|
"data_format": "MITRE",
|
||
|
"CVE_data_meta": {
|
||
|
"ID": "CVE-2023-3311",
|
||
|
"ASSIGNER": "cna@vuldb.com",
|
||
|
"STATE": "PUBLIC"
|
||
|
},
|
||
|
"description": {
|
||
|
"description_data": [
|
||
|
{
|
||
|
"lang": "eng",
|
||
|
"value": "A vulnerability, which was classified as problematic, was found in SourceCodester Advance Charity Management System 1.0. This affects an unknown part of the file addsuppliers.php. The manipulation of the argument First name leads to cross site scripting. It is possible to initiate the attack remotely. The associated identifier of this vulnerability is VDB-231807."
|
||
|
},
|
||
|
{
|
||
|
"lang": "deu",
|
||
|
"value": "Es wurde eine problematische Schwachstelle in SourceCodester Advance Charity Management System 1.0 gefunden. Es geht dabei um eine nicht klar definierte Funktion der Datei addsuppliers.php. Durch Manipulation des Arguments First name mit unbekannten Daten kann eine cross site scripting-Schwachstelle ausgenutzt werden. Der Angriff kann \u00fcber das Netzwerk passieren."
|
||
|
}
|
||
|
]
|
||
|
},
|
||
|
"problemtype": {
|
||
|
"problemtype_data": [
|
||
|
{
|
||
|
"description": [
|
||
|
{
|
||
|
"lang": "eng",
|
||
|
"value": "CWE-79 Cross Site Scripting",
|
||
|
"cweId": "CWE-79"
|
||
|
}
|
||
|
]
|
||
|
}
|
||
|
]
|
||
|
},
|
||
|
"affects": {
|
||
|
"vendor": {
|
||
|
"vendor_data": [
|
||
|
{
|
||
|
"vendor_name": "SourceCodester",
|
||
|
"product": {
|
||
|
"product_data": [
|
||
|
{
|
||
|
"product_name": "Advance Charity Management System",
|
||
|
"version": {
|
||
|
"version_data": [
|
||
|
{
|
||
|
"version_affected": "=",
|
||
|
"version_value": "1.0"
|
||
|
}
|
||
|
]
|
||
|
}
|
||
|
}
|
||
|
]
|
||
|
}
|
||
|
}
|
||
|
]
|
||
|
}
|
||
|
},
|
||
|
"references": {
|
||
|
"reference_data": [
|
||
|
{
|
||
|
"url": "https://vuldb.com/?id.231807",
|
||
|
"refsource": "MISC",
|
||
|
"name": "https://vuldb.com/?id.231807"
|
||
|
},
|
||
|
{
|
||
|
"url": "https://vuldb.com/?ctiid.231807",
|
||
|
"refsource": "MISC",
|
||
|
"name": "https://vuldb.com/?ctiid.231807"
|
||
|
}
|
||
|
]
|
||
|
},
|
||
|
"credits": [
|
||
|
{
|
||
|
"lang": "en",
|
||
|
"value": "kr1shna4garwal (VulDB User)"
|
||
|
}
|
||
|
],
|
||
|
"impact": {
|
||
|
"cvss": [
|
||
|
{
|
||
|
"version": "3.1",
|
||
|
"baseScore": 2.4,
|
||
|
"vectorString": "CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:U/C:N/I:L/A:N",
|
||
|
"baseSeverity": "LOW"
|
||
|
},
|
||
|
{
|
||
|
"version": "3.0",
|
||
|
"baseScore": 2.4,
|
||
|
"vectorString": "CVSS:3.0/AV:N/AC:L/PR:H/UI:R/S:U/C:N/I:L/A:N",
|
||
|
"baseSeverity": "LOW"
|
||
|
},
|
||
|
{
|
||
|
"version": "2.0",
|
||
|
"baseScore": 3.3,
|
||
|
"vectorString": "AV:N/AC:L/Au:M/C:N/I:P/A:N",
|
||
|
"baseSeverity": "LOW"
|
||
|
}
|
||
|
]
|
||
|
}
|
||
|
}
|