Description
Cross-Site Scripting (XSS) and Cross-Site Request Forgery (CSRF) vulnerability exits in hostel management system 2.1 via the name field in my-profile.php. Chaining to this both vulnerabilities leads to account takeover.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2021-30086 | Cross-Site Scripting (XSS) and Cross-Site Request Forgery (CSRF) vulnerability exits in hostel management system 2.1 via the name field in my-profile.php. Chaining to this both vulnerabilities leads to account takeover. |
References
| Link | Providers |
|---|---|
| https://www.exploit-db.com/exploits/50461 |
|
History
No history.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-04T03:47:13.602Z
Reserved: 2021-11-01T00:00:00.000Z
Link: CVE-2021-43137
No data.
Status : Modified
Published: 2021-12-01T20:15:08.327
Modified: 2024-11-21T06:28:43.250
Link: CVE-2021-43137
No data.
OpenCVE Enrichment
No data.
EUVD