A stored blind XSS vulnerability exists in the Contact Page of the Phpgurukul Medical Card Generation System 1.0 mcgs/contact.php. The name field fails to properly sanitize user input, allowing an attacker to inject malicious JavaScript.
| Software | From | Fixed in |
|---|---|---|
| anujk305 / medical_card_generation_system | 1.0 | 1.0.x |