A vulnerability was found in SourceCodester Web-based...
Moderate severity
Unreviewed
Published
Apr 20, 2025
to the GitHub Advisory Database
•
Updated Apr 20, 2025
Description
Published by the National Vulnerability Database
Apr 20, 2025
Published to the GitHub Advisory Database
Apr 20, 2025
Last updated
Apr 20, 2025
A vulnerability was found in SourceCodester Web-based Pharmacy Product Management System 1.0. It has been rated as problematic. This issue affects some unknown processing of the file changepassword.php. The manipulation of the argument txtconfirm_password/txtnew_password/txtold_password leads to cross site scripting. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used.
References