Stored XSS Vulnerability in Hospital Patient Record Management System v1.0 via Crafted Payload Injection in Special Field

Stored XSS Vulnerability in Hospital Patient Record Management System v1.0 via Crafted Payload Injection in Special Field

CVE-2022-26244 · MEDIUM Severity

CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N

A stored cross-site scripting (XSS) vulnerability in Hospital Patient Record Management System v1.0 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the "special" field.

Learn more about our Web App Pen Testing.