CVE-2020-35309

Publication date

2021-01-21 14:41:27

Family

mitre

State

PUBLISHED

Description

Bakeshop Online Ordering System in PHP/MySQLi 1.0 is affected by cross-site scripting (XSS) which allows remote attackers to inject an arbitrary web script or HTML in admin dashboard - "Categories".