CVE-2022-43079
EUVD-2022-4612801.11.2022, 14:15
A cross-site scripting (XSS) vulnerability in /admin/add-fee.php of Train Scheduler App v1.0 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the cmddept parameter.
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| train_scheduler_app_project | train_scheduler_app | 1.0 |
𝑥
= Vulnerable software versions