CVE-2021-37781: XSS
Employee Record Management System v 1.2 is vulnerable to Cross Site Scripting (XSS) via editempprofile.php.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2021-37781?
The severity of CVE-2021-37781 is medium, with a CVSS score of 5.4.
How does CVE-2021-37781 impact Employee Record Management System v 1.2?
CVE-2021-37781 allows for Cross Site Scripting (XSS) attacks via the editempprofile.php page of Employee Record Management System v 1.2.
How can I fix the XSS vulnerability in Employee Record Management System v 1.2?
To fix the XSS vulnerability, it is recommended to apply the patches or updates provided by the PHPGURUKUL Employee Record Management System.
Is there any more information available about CVE-2021-37781?
Yes, you can find more information about CVE-2021-37781 in the GitHub repository and the official website of PHPGURUKUL Employee Record Management System.
What is CWE-79?
CWE-79 is a Common Weakness Enumeration (CWE) category that refers to Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting').