Cross-Site Scripting Vulnerability in Home Owners Collection Management System
CVE-2022-25028
6.1MEDIUM
Key Information:
- Vendor
- CVE Published:
- 28 February 2022
What is CVE-2022-25028?
The Home Owners Collection Management System version 1.0 contains a cross-site scripting vulnerability that can be exploited via the 'collected_by' parameter within the List of Collections module. This security flaw allows attackers to inject malicious scripts into web pages viewed by users, potentially compromising sensitive data and user interactions.
