CVE-2018-12651
6.1
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
Exploitability: 2.8 / Impact: 2.7
Source: NVD
Description
A Reflected Cross Site Scripting (XSS) Vulnerability was discovered in Adrenalin 5.4 HRMS Software. The user supplied input containing JavaScript is echoed back in JavaScript code in an HTML response via the ShiftEmployeeSearch.aspx prntFrmName or prntDDLCntrlName parameter.
Affected (1)
Products: Myadrenalin: Human Resource Management Software
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| Version 5.4.0 |
References (3)
Source: cve@mitre.org
ExploitMitigationThird Party Advisory
Source: cve@mitre.org
Source: af854a3a-2127-422b-91ae-364da2661108
ExploitMitigationThird Party Advisory
Timeline
No history available yet.