Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2022-58892
HistoryJun 27, 2022 - 12:00 a.m.

74cms Cross-Site Scripting Vulnerability (CNVD-2022-58892)

2022-06-2700:00:00
China National Vulnerability Database
www.cnvd.org.cn
27
74cms
cross-site scripting
vulnerability
data validation
javascript
client side
china xunyi technology

EPSS

0.001

Percentile

34.0%

74cms is a PHP and MySQL-based online recruitment system from China Xunyi Technology. 74cms version v3.5.1 suffers from a cross-site scripting vulnerability that stems from a lack of data validation filtering of user-supplied and output data in path/company. An attacker could exploit the vulnerability to execute JavaScript code on the client side.

EPSS

0.001

Percentile

34.0%

Related for CNVD-2022-58892