CVE-2022-1817 - CVE House
Back to Database
Status published Low CVE-2022-1817

Badminton Center Management System Userlist Module cross site scripting

Vulnerability Description

A vulnerability, which was classified as problematic, was found in Badminton Center Management System. This affects the userlist module at /bcms/admin/?page=user/list. The manipulation of the argument username with the input </td><img src="" onerror="alert(1)"><td>1 leads to an authenticated cross site scripting. Exploit details have been disclosed to the public.

Impact Analysis

Refer to official advisory for detailed impact metrics.

Remediation

Ensure systems are updated to the latest vendor-supplied patch levels.

THREAT MONITOR

Am I Vulnerable?

Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2022-1817

Credits & Attribution

No credits recorded in the NVD database.

Affected Vendor

unspecified

View all reports →

Affected Software

Badminton Center Management System
Vulnerable Versions:
Unknown

Timeline

Official Publish: May 23rd, 2022
Last Modified: April 15th, 2025
Added to House: July 21st, 2026

CVSS Vectors

V3: CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:N

Weaknesses (CWE)