CVE-2022-1288
09.04.2022, 20:15
A vulnerability, which was classified as problematic, has been found in School Club Application System 1.0. This issue affects access to /scas/admin/. The manipulation of the parameter page with the input %22%3E%3Cimg%20src=x%20onerror=alert(1)%3E leads to a reflected cross site scripting. The attack may be initiated remotely and does not require any form of authentication. The exploit has been disclosed to the public and may be used.
| Vendor | Product | Version |
|---|---|---|
| school_club_application_system_project | school_club_application_system | 1.0 |
𝑥
= Vulnerable software versions