Security Advisory

CVE-2021-30111

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2021-04-08 11:16:36
Last updated 2024-08-03 22:24:59
Assigner mitre
State PUBLISHED

Description

A stored XSS vulnerability exists in Web-School ERP V 5.0 via (Add Events) in the event name and description fields. An attack can inject a JavaScript code that will be stored in the page. If any visitor sees the events, then the payload will be executed.