CVE-2025-3297 | SourceCodester Online Eyewear Shop 1.0 Master.php?f=save_product brand cross site scripting
A vulnerability, which was classified as problematic, was found in SourceCodester Online Eyewear Shop 1.0. Affected is an unknown function of the file /classes/Master.php?f=save_product. The manipulation of the argument brand leads to cross site scripting.
This vulnerability is traded as CVE-2025-3297. It is possible to launch the attack remotely. Furthermore, there is an exploit available.
Other parameters might be affected as well.