A vulnerability, which was classified as problematic, was found in Student Information System 1.0. Affected is admin/?page=students of the Student Roll module. The manipulation with the input <script>alert(1)</script> leads to authenticated cross site scripting. Exploit details have been disclosed to the public.
                
            References
                    Configurations
                    Configuration 1 (hide)
            
            
  | 
    
History
                    21 Nov 2024, 06:41
| Type | Values Removed | Values Added | 
|---|---|---|
| References | () https://github.com/Xor-Gerke/webray.com.cn/blob/main/cve/Student%20Information%20System/SIS_Stored_Cross_Site_Scripting%28XSS%29.md - | |
| References | () https://vuldb.com/?id.200586 - Third Party Advisory | |
| CVSS | 
        v2 :  v3 :  | 
    
        v2 : 3.5
         v3 : 2.4  | 
07 Nov 2023, 03:42
| Type | Values Removed | Values Added | 
|---|---|---|
| References | 
        
        
  | 
    
        
        
  | 
Information
                Published : 2022-05-24 06:15
Updated : 2024-11-21 06:41
NVD link : CVE-2022-1819
Mitre link : CVE-2022-1819
CVE.ORG link : CVE-2022-1819
JSON object : View
Products Affected
                student_information_system_project
- student_information_system
 
CWE
                
                    
                        
                        CWE-79
                        
            Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
