Security Advisory

CVE-2020-26628

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2024-01-10 00:00:00
Last updated 2025-06-20 15:29:04
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

A Cross-Site Scripting (XSS) vulnerability was discovered in Hospital Management System V4.0 which allows an attacker to execute arbitrary web scripts or HTML code via a malicious payload appended to a username on the 'Edit Profile" page and triggered by another user visiting the profile.