A Cross-Site Scripting (XSS) vulnerability was discovered in Hospital Management System V4.0 which allows an attacker to execute arbitrary web scripts or HTML code via a malicious payload appended to a username on the 'Edit Profile" page and triggered by another user visiting the profile.
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Fri, 20 Jun 2025 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2025-06-20T15:29:04.793Z
Reserved: 2020-10-07T00:00:00.000Z
Link: CVE-2020-26628
Updated: 2024-08-04T15:56:04.841Z
Status : Modified
Published: 2024-01-10T09:15:43.863
Modified: 2025-06-20T16:15:19.880
Link: CVE-2020-26628
No data.
OpenCVE Enrichment
No data.
Weaknesses