CVE-2023-3884
CVSS 3.1 Score 7.5 of 10 (high)
Details
Summary
CVE-2023-3884 is a recently disclosed vulnerability affecting the Campcodes Beauty Salon Management System 1.0. The issue lies in the /admin/edit_product.php file, where a cross-site scripting (XSS) vulnerability has been identified. This weakness can be exploited remotely by manipulating the id argument. The attacker can inject malicious scripts into a user's browser, potentially gaining unauthorized access or stealing sensitive information. The vulnerability identifier is VDB-235246, and it is currently considered a significant risk as the exploit is publicly known.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Vendors
- Linecorp