CVE-2020-35395
15.12.2020, 16:15
XSS in the Add Expense Component of EGavilan Media Expense Management System 1.0 allows an attacker to permanently store malicious JavaScript code via the 'description' field
Vendor | Product | Version |
---|---|---|
egavilanmedia | expense_management_system | 1.0 |
𝑥
= Vulnerable software versions