logo
Vulnerability feed
CONTRIBUTE

Vulnerability

warn

CVE-2023-24065

Reference to the description:

https://nvd.nist.gov/vuln/detail/CVE-2023-24065

Description:
NOSH 4a5cfdb allows stored XSS via the create user page. For example, a first name (of a physician, assistant, or billing user) can have a JavaScript payload that is executed upon visiting the /users/2/1 page. This may allow attackers to steal Protected Health Information because the product is for health charting.
Last updated date:
02/07/2023
Type:
exploit
Confidence:
HIGH
Date of publishing:
02/07/2023
Reference url to background

https://github.com/shihjay2/nosh2/issues/202

Vulnerability FeedContributorsAboutBlog

@inTheWild

©2024

Privacy Policy