Vulnerabilities > Covid 19 Directory ON Vaccination System Project > Medium

DATE CVE VULNERABILITY TITLE RISK
2022-12-21 CVE-2022-46095 Cross-site Scripting vulnerability in Covid-19 Directory on Vaccination System Project Covid-19 Directory on Vaccination System 1.0
Sourcecodester Covid-19 Directory on Vaccination System 1.0 was discovered to contain a Cross-Site Scripting (XSS) vulnerability via verification.php because the program does not verify the txtvaccinationID parameter.
6.1
2022-12-21 CVE-2022-46096 Cross-site Scripting vulnerability in Covid-19 Directory on Vaccination System Project Covid-19 Directory on Vaccination System 1.0
A Cross site scripting (XSS) vulnerability in Sourcecodester Online Covid-19 Directory on Vaccination System v1.0 allows attackers to execute arbitrary code via the txtfullname parameter or txtphone parameter to register.php without logging in.
6.1