1 results (0.002 seconds)

CVSS: 4.8EPSS: 0%CPEs: 1EXPL: 1

27 Jan 2021 — Stored XSS vulnerability in BDTASK Multi-Store Inventory Management System 1.0 allows a local admin to inject arbitrary code via the Customer Name Field. Una vulnerabilidad de tipo XSS almacenado en BDTASK Multi-Store Inventory Management System versión 1.0, permite a un administrador local inyectar código arbitrario por medio del Customer Name Field • http://bdtask.com • CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') •