SourceCodester Best Employee Management System V1.0 is vulnerable to Cross Site Scripting (XSS) in /admin/profile.php via the website_image, fname, lname, contact, username, and address parameters.
Metrics
Affected Vendors & Products
References
History
Thu, 15 May 2025 14:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Weaknesses | CWE-79 | |
Metrics |
cvssV3_1
|
Wed, 14 May 2025 16:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | SourceCodester Best Employee Management System V1.0 is vulnerable to Cross Site Scripting (XSS) in /admin/profile.php via the website_image, fname, lname, contact, username, and address parameters. | |
References |
|

Status: PUBLISHED
Assigner: mitre
Published: 2025-05-14T00:00:00.000Z
Updated: 2025-05-15T13:51:56.530Z
Reserved: 2025-04-22T00:00:00.000Z
Link: CVE-2025-44184

Updated: 2025-05-15T13:51:52.100Z

Status : Awaiting Analysis
Published: 2025-05-14T17:15:49.000
Modified: 2025-05-16T14:43:56.797
Link: CVE-2025-44184

No data.