CVE-2020-37022
EUVD-2020-3095830.01.2026, 17:16
OpenZ ERP 3.6.60 contains a persistent cross-site scripting vulnerability in the Employee module's name and description parameters. Attackers can inject malicious scripts through POST requests to , enabling session hijacking and manipulation of application modules.
Awaiting analysis
This vulnerability is currently awaiting analysis.