A stored cross-site scripting (XSS) vulnerability in Ice Hrm 30.0.0.OS allows attackers to steal cookies via a crafted payload inserted into the First Name field.
CVSS
No CVSS.
References
| Link | Resource |
|---|---|
| https://github.com/gamonoid/icehrm/issues/285 |
Configurations
No configuration.
Information
Published : 2022-02-28 19:15
Updated : 2022-02-28 19:23
NVD link : CVE-2022-25015
Mitre link : CVE-2022-25015
JSON object : View
Products Affected
No product.
CWE
No CWE.
