CVE-2022-2800

A vulnerability, which was classified as problematic, has been found in SourceCodester Gym Management System. Affected by this issue is some unknown functionality. The manipulation leads to clickjacking. The attack may be launched remotely. The exploit has been disclosed to the public and may be used. VDB-206246 is the identifier assigned to this vulnerability.
Configurations

Configuration 1 (hide)

cpe:2.3:a:gym_management_system_project:gym_management_system:-:*:*:*:*:*:*:*

History

16 Aug 2022, 15:36

Type Values Removed Values Added
CWE CWE-451 CWE-1021
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 6.1
References (MISC) https://github.com/Blythe-LU/Record4/blob/main/Gym%20management%20system%20project%20-%20ClickJacking%20exists%20on%20multiple%20pages.md - (MISC) https://github.com/Blythe-LU/Record4/blob/main/Gym%20management%20system%20project%20-%20ClickJacking%20exists%20on%20multiple%20pages.md - Exploit, Third Party Advisory
References (MISC) https://vuldb.com/?id.206246 - (MISC) https://vuldb.com/?id.206246 - Third Party Advisory, VDB Entry
CPE cpe:2.3:a:gym_management_system_project:gym_management_system:-:*:*:*:*:*:*:*

12 Aug 2022, 21:43

Type Values Removed Values Added
New CVE

Information

Published : 2022-08-12 20:15

Updated : 2024-02-04 22:51


NVD link : CVE-2022-2800

Mitre link : CVE-2022-2800

CVE.ORG link : CVE-2022-2800


JSON object : View

Products Affected

gym_management_system_project

  • gym_management_system
CWE
CWE-1021

Improper Restriction of Rendered UI Layers or Frames

CWE-451

User Interface (UI) Misrepresentation of Critical Information