← Back to CVE List
CVE-2021-38822
A Stored Cross Site Scripting vulnerability via Malicious File Upload exists in multiple pages of IceHrm 30.0.0.OS that allows for arbitrary execution of JavaScript commands.
> MITRE Terms of Use apply – see LICENSE‑MITRE.txt