Security Advisory

CVE-2022-1288

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2022-04-09 20:10:13
Last updated 2025-04-15 14:41:41
Assigner VulDB
State PUBLISHED

Description

A vulnerability, which was classified as problematic, has been found in School Club Application System 1.0. This issue affects access to /scas/admin/. The manipulation of the parameter page with the input %22%3E%3Cimg%20src=x%20onerror=alert(1)%3E leads to a reflected cross site scripting. The attack may be initiated remotely and does not require any form of authentication. The exploit has been disclosed to the public and may be used.