Cross-Site Scripting (XSS) vulnerability in Zhiyuan G6 Government Collaboration System V6.1SP1, via the 'method' parameter to 'seeyon/hrSalary.do'.
References
Link | Resource |
---|---|
http://note.youdao.com/noteshare?id=29f908204968a79233c1c0c80a59f8ff&sub=AFA8E81AA31C4482974869C5DFE07033 | Exploit Third Party Advisory |
http://note.youdao.com/noteshare?id=51d8946722c0304b5bfd72da03eaf013&sub=BDBAD6EDD2C941C18AB57141313AB5FE | Exploit Third Party Advisory |
Configurations
History
No history.
Information
Published : 2021-03-30 03:15
Updated : 2024-02-28 18:28
NVD link : CVE-2020-20545
Mitre link : CVE-2020-20545
CVE.ORG link : CVE-2020-20545
JSON object : View
Products Affected
seeyon
- g6_government_collaborative_system
CWE
CWE-79
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')