CVE-2022-43079
01.11.2022, 14:15
A cross-site scripting (XSS) vulnerability in /admin/add-fee.php of Train Scheduler App v1.0 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the cmddept parameter.
Vendor | Product | Version |
---|---|---|
train_scheduler_app_project | train_scheduler_app | 1.0 |
𝑥
= Vulnerable software versions