VYPR
Medium severity6.1NVD Advisory· Published Sep 17, 2019· Updated Jun 17, 2026

CVE-2019-11559

CVE-2019-11559

Description

A reflected Cross-site scripting (XSS) vulnerability in HRworks V 1.16.1 allows remote attackers to inject arbitrary web script or HTML via the URL parameter to the Login component.

Affected products

3
  • HRworks/HRworks2 versions
    cpe:2.3:a:hrworks:hrworks:1.16.1:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:hrworks:hrworks:1.16.1:*:*:*:*:*:*:*
    • (no CPE)range: = 1.16.1
  • HRworks/HRworksdescription

Patches

Vulnerability mechanics

References

2

News mentions

0

No linked articles in our index yet.