A vulnerability was found in SourceCodester Best Employee Management System 1.0. It has been rated as problematic. Affected by this issue is some unknown functionality of the file /admin/Operations/Role.php of the component Add Role Page. The manipulation of the argument assign_name/description leads to cross site scripting. The attack may be launched remotely.
The product does not neutralize or incorrectly neutralizes user-controllable input before it is placed in output that is used as a web page that is served to other users.
Link | Tags |
---|---|
https://vuldb.com/?id.296576 | vdb entry permissions required technical description |
https://vuldb.com/?ctiid.296576 | signature vdb entry permissions required |
https://vuldb.com/?submit.505210 | third party advisory vdb entry |
https://www.sourcecodester.com/ | product |