Medium severity4.8NVD Advisory· Published Oct 13, 2023· Updated Jun 17, 2026
CVE-2023-45391
CVE-2023-45391
Description
A stored cross-site scripting (XSS) vulnerability in the Create A New Employee function of Granding UTime Master v9.0.7-Build:Apr 4,2023 allows authenticated attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the First Name parameter.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- cpe:2.3:a:grandingteco:utime_master:9.0.7:*:*:*:*:*:*:*
(expand)+ 1 more
- (no CPE)
- (no CPE)range: =9.0.7-Build:Apr 4,2023
Patches
Vulnerability mechanics
References
1- the-it-wonders.blogspot.com/2023/10/granding-utime-master-stored-xss.htmlnvdExploitThird Party Advisory
News mentions
0No linked articles in our index yet.