CVE-2024-25435
EUVD-2024-2276428.02.2024, 20:15
A cross-site scripting (XSS) vulnerability in Md1health Md1patient v2.0.0 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the Msg parameter.
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| md1health | md1patient | 1.16.0 |
| md1health | md1patient | 2.0.0 |
𝑥
= Vulnerable software versions