shenxianyuguitian/cafeorder_vuln_XSS

shenxianyuguitian/cafeorder_vuln_XSS

Releases0
Proof-of-Concept and Advisory for Simple Cafe Ordering System XSS

CVE History

CVEPublishedCVSS v3CVSS v2
3.5 LOW4 MEDIUM

A security flaw has been discovered in code-projects Simple Cafe Ordering System 1.0. This affects an unknown part of the file /add_to_cart. Performing manipulation of the argument product_name results in cross site scripting. It is possible to initiate the attack remotely. The exploit has been released to the public and may be exploited.