CVE-2022-46905 Information
Dec 13, 2022
cve
Description
Insufficient processing of user input in WebSoft HCM 2021.2.3.327 allows an unauthenticated attacker to inject arbitrary HTML tags into the page processed by the user’s browser including scripts in the JavaScript programming language which leads to Reflected XSS.
Reference
https://news.websoft.ru/_wt/wiki_base/7175852393019676262
Share on: