CVE-2023-5304

CVSS 3.1 Score 6.1 of 10 (medium)

Details

Published Sep 30, 2023
Updated: Jun 5, 2024
CWE ID 79

Summary

CVE-2023-5304 is a newly identified vulnerability affecting the Service Booking component's /book-services.php file (version 1.0) in Online Banquet Booking System. This issue is classified as problematic and involves a cross-site scripting (XSS) vulnerability. The manipulation of the message argument can be exploited remotely to execute malicious scripts on users' browsers. The specific functionality causing the issue remains unknown. This vulnerability is tracked as VDB-240943.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share