← Back to CVE List

CVE-2020-28129

Published: 2020-11-17T21:15Z
Last Modified: 2024-11-21T05:22Z
Source: MITRE CVE List
License: MITRE-CVE-TOS
Stored Cross-site scripting (XSS) vulnerability in SourceCodester Gym Management System 1.0 allows users to inject and store arbitrary JavaScript code in index.php?page=packages via vulnerable fields 'Package Name' and 'Description'. > MITRE Terms of Use apply – see LICENSE‑MITRE.txt