CVE-2021-41434

Published
View on NVD ↗
CVSS v3
5.4
MEDIUM
CVSS v2
N/A
Affected
1
PROJECT

Description

A stored Cross-Site Scripting (XSS) vulnerability exists in version 1.0 of the Expense Management System application that allows for arbitrary execution of JavaScript commands through index.php.

:dart: List of publicly disclosed application vulnerabilities that I found, reported and were attributed to me.
GitHubGitHub