An issue in Jorani Leave Management System 1.0.3 allows a remote attacker to execute arbitrary HTML code via a crafted script to the comment field of the List of Leave requests page.
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published:

Updated: 2024-09-16T18:32:56.858Z

Reserved: 2023-10-09T00:00:00

Link: CVE-2023-45540

cve-icon Vulnrichment

Updated: 2024-08-02T20:21:16.288Z

cve-icon NVD

Status : Modified

Published: 2023-10-16T22:15:12.733

Modified: 2024-11-21T08:26:56.987

Link: CVE-2023-45540

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.