CVE-2022-3493
SourceCodester Human Resource Management System Add Employee cross site scripting
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
0Exploited in Wild
-Decision
Descriptions
A vulnerability, which was classified as problematic, has been found in SourceCodester Human Resource Management System 1.0. This issue affects some unknown processing of the component Add Employee Handler. The manipulation of the argument First Name/Middle Name/Last Name leads to cross site scripting. The attack may be initiated remotely. The identifier VDB-210773 was assigned to this vulnerability.
Se ha encontrado una vulnerabilidad, clasificada como problemática, en SourceCodester Human Resource Management System versión 1.0. Este problema afecta a un procesamiento desconocido del componente Add Employee Handler. La manipulación del argumento Name/Middle Name/Last Name conlleva a un ataque de tipo cross site scripting. El ataque puede ser iniciado remotamente. El identificador VDB-210773 fue asignado a esta vulnerabilidad
CVSS Scores
SSVC
- Decision:-
Timeline
- 2022-10-13 CVE Reserved
- 2022-10-13 CVE Published
- 2024-05-05 EPSS Updated
- 2024-08-03 CVE Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
- CWE-707: Improper Neutralization
CAPEC
References (0)
URL | Tag | Source |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Oretnom23 Search vendor "Oretnom23" | Human Resource Management System Search vendor "Oretnom23" for product "Human Resource Management System" | 1.0 Search vendor "Oretnom23" for product "Human Resource Management System" and version "1.0" | - |
Affected
|