Security Advisory

CVE-2020-35309

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2021-01-21 14:41:27
Last updated 2024-08-04 17:02:07
Assigner mitre
State PUBLISHED

Description

Bakeshop Online Ordering System in PHP/MySQLi 1.0 is affected by cross-site scripting (XSS) which allows remote attackers to inject an arbitrary web script or HTML in admin dashboard - "Categories".