CVE-2025-40685
Reflected Cross-Site Scripting (XSS) in Human Resource Management System version 1.0. This vulnerability could allow an attacker to execute JavaScript code in the victim's browser by sending a malicious URL through the 'searcstate' parameter in/state.php.
Vendor
Product
CWE
Yayın Tarihi
2025-07-29 13:15:26
Güncelleme
2025-08-04 20:59:22
Source Identifier
cve-coordination@incibe.es
KEV Date Added
-