Vulnerabilities (CVE)

Filtered by vendor Cowell Enterprise Travel Management System Project Subscribe
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2022-39054 1 Cowell Enterprise Travel Management System Project 1 Cowell Enterprise Travel Management System 2024-02-28 N/A 6.1 MEDIUM
Cowell enterprise travel management system has insufficient filtering for special characters within web URL. An unauthenticated remote attacker can inject JavaScript and perform XSS (Reflected Cross-Site Scripting) attack.