VDB

CVE-2023-5303

CVE-2023-5303 PUBLISHED CVSS 3.5 LOW

A vulnerability, which was classified as problematic, was found in Online Banquet Booking System 1.0. Affected is an unknown function of the file /view-booking-detail.php of the component Account Detail Handler. The manipulation of the argument username leads to cross site scripting. It is possible to launch the attack remotely. VDB-240942 is the identifier assigned to this vulnerability.

EPSS 0.34% · 27.0th percentile

Risk Scores

CVSS 3.1
3.5
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:N
EPSS Score
0.34%
27.0th percentile

Affected Products

VendorProductVersions
n/aOnline Banquet Booking System1.0, 1.0, 1.0
phpgurukulonline_banquet_booking_system1.0, 1.0, 1.0

Timeline

  • Sep 30, 2023 CVE Published
  • Oct 1, 2023 EPSS Score
  • Nov 2, 2023 EPSS Score
  • Dec 4, 2023 EPSS Score
  • Jan 5, 2024 EPSS Score
  • Feb 6, 2024 EPSS Score
  • Mar 9, 2024 EPSS Score
  • Apr 10, 2024 EPSS Score
  • May 12, 2024 EPSS Score
  • Jun 13, 2024 EPSS Score
  • Jul 15, 2024 EPSS Score
  • Aug 16, 2024 EPSS Score
Open in Interactive Console →
$ Console Community · 100/wk Open console ›