Security Advisory

CVE-2025-26158

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2025-02-14 00:00:00
Last updated 2025-02-14 19:19:36
Assigner mitre
State PUBLISHED

Description

A Stored Cross-Site Scripting (XSS) vulnerability was discovered in the manage-employee.php page of Kashipara Online Attendance Management System V1.0. This vulnerability allows remote attackers to execute arbitrary scripts via the department parameter.