← Back to CVE List

CVE-2021-42663

Published: 2021-11-05T13:15Z
Last Modified: 2024-11-21T06:27Z
Source: MITRE CVE List
License: MITRE-CVE-TOS
An HTML injection vulnerability exists in Sourcecodester Online Event Booking and Reservation System in PHP/MySQL via the msg parameter to /event-management/index.php. An attacker can leverage this vulnerability in order to change the visibility of the website. Once the target user clicks on a given link he will display the content of the HTML code of the attacker's choice. > MITRE Terms of Use apply – see LICENSE‑MITRE.txt