Releases17
Frequency3 months 10 hours
Last Release
Stars150
IT Items Database

CVE History

CVEPublishedCVSS v3CVSS v2
4.3 MEDIUM

An issue was discovered in IT ITems DataBase (ITDB) through 1.23. The vulnerability exists due to insufficient filtration of user-supplied data in the "value" HTTP POST parameter passed to the "itdb-1.23/js/DataTables-1.8.2/examples/examples_support/editable_ajax.php" URL. An attacker could execute arbitrary HTML and script code in a browser in the context of the vulnerable website.