CVE-2021-25790
5.4
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N
Exploitability: 2.3 / Impact: 2.7
Source: NVD
Description
Multiple stored cross site scripting (XSS) vulnerabilities in the "Register" module of House Rental and Property Listing 1.0 allows authenticated attackers to execute arbitrary web scripts or HTML via crafted payloads in all text fields except for Phone Number and Alternate Phone Number.
Affected (1)
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| Version 1.0 |
References (6)
https://www.sourcecodester.com/php/14649/house-rental-and-property-listing-php-full-source-code.html
Source: cve@mitre.org
Product
Source: af854a3a-2127-422b-91ae-364da2661108
ExploitThird Party AdvisoryVDB Entry
https://www.sourcecodester.com/php/14649/house-rental-and-property-listing-php-full-source-code.html
Source: af854a3a-2127-422b-91ae-364da2661108
Product
Timeline
No history available yet.