Security Advisory

CVE-2020-26628

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2024-01-10 00:00:00
Last updated 2025-06-20 15:29:04
Assigner mitre
State PUBLISHED

Description

A Cross-Site Scripting (XSS) vulnerability was discovered in Hospital Management System V4.0 which allows an attacker to execute arbitrary web scripts or HTML code via a malicious payload appended to a username on the Edit Profile" page and triggered by another user visiting the profile.