Metrics
Affected Vendors & Products
Wed, 07 May 2025 17:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Hailey888
Hailey888 oa System |
|
CPEs | cpe:2.3:a:hailey888:oa_system:*:*:*:*:*:*:*:* | |
Vendors & Products |
Hailey888
Hailey888 oa System |
Tue, 08 Apr 2025 19:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Mon, 07 Apr 2025 23:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | A vulnerability classified as problematic was found in hailey888 oa_system up to 2025.01.01. This vulnerability affects the function loginCheck of the file cn/gson/oasys/controller/login/LoginsController.java of the component Frontend. The manipulation of the argument Username leads to cross site scripting. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. Continious delivery with rolling releases is used by this product. Therefore, no version details of affected nor updated releases are available. | |
Title | hailey888 oa_system Frontend LoginsController.java loginCheck cross site scripting | |
Weaknesses | CWE-79 CWE-94 |
|
References |
| |
Metrics |
cvssV2_0
|

Status: PUBLISHED
Assigner: VulDB
Published: 2025-04-07T23:00:14.566Z
Updated: 2025-04-08T18:24:45.369Z
Reserved: 2025-04-07T07:10:25.280Z
Link: CVE-2025-3388

Updated: 2025-04-08T18:01:11.682Z

Status : Analyzed
Published: 2025-04-07T23:15:44.033
Modified: 2025-05-07T16:51:58.843
Link: CVE-2025-3388

No data.