CVE-2023-36159
MEDIUM 6.1EPSS 0.6%
Cross Site Scripting (XSS) vulnerability in sourcecodester Lost and Found Information System 1.0 allows remote attackers to run arbitrary code via the First Name, Middle Name and Last Name fields on the Create User page.
- CVSS v3.1
- 6.1 MEDIUM
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N - EPSS
- 0.64% chance of exploitation in the next 30 days, 48th percentile
- Published
- 2023-08-03
- Updated
- 2026-07-09
Proof-of-concept exploits (1)
- unknown00759/CVE-2023-361590★ · 2023-08-02