
CVE-2021-46074 - A Stored Cross Site Scripting (XSS) vulnerability exists in Sourcecodester Vehicle Service Management System 1.0 via the Settings Section in login panel.
A Stored Cross Site Scripting (XSS) vulnerability exists in Sourcecodester Vehicle Service Management System 1.0 via the Settings Section in login panel.
"><script>alert(document.cookie)</script>
An attacker can able to inject malicious JavaScript code in Settings Section.
It is recommended to sanitize all the input fields throughout the application.