CVE-2022-4279: SourceCodester Human Resource Management System employeeview.php cross site scripting
A vulnerability classified as problematic has been found in SourceCodester Human Resource Management System 1.0. Affected is an unknown function of the file /hrm/employeeview.php. The manipulation of the argument search leads to cross site scripting. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-214776.
Affected Software
Event History
Frequently Asked Questions
What is the vulnerability ID of this issue?
The vulnerability ID is CVE-2022-4279.
What is the severity level of CVE-2022-4279?
The severity level of CVE-2022-4279 is medium.
What is the affected software?
The affected software is SourceCodester Human Resource Management System 1.0.
What is the specific vulnerability in SourceCodester Human Resource Management System 1.0?
The specific vulnerability is a cross-site scripting (XSS) vulnerability in the /hrm/employeeview.php file.
How can the vulnerability be exploited?
The vulnerability can be exploited remotely by manipulating the search argument, leading to cross-site scripting.