ZeroHour

CVE-2019-11032

CVSS 3.0
6.1 medium
EPSS
<1%p56
Published
()
Modified
Description

In EasyToRecruit (E2R) before 2.11, the upload feature and the Candidate Profile Management feature are prone to Cross Site Scripting (XSS) injection in multiple locations.

Vendors
hr-technologies
Products
easytorecruit
Weakness
CWE-79
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N

In the news

No ingested article mentions this CVE yet.