Show filters
2 Total Results
Displaying 1-2 of 2
Sort by:
Attacker Value
Unknown
CVE-2021-25838
Disclosure Date: April 26, 2021 (last updated February 22, 2025)
The Import function in MintHCM RELEASE 3.0.8 allows an attacker to execute a cross-site scripting (XSS) payload in file-upload.
0
Attacker Value
Unknown
CVE-2021-25839
Disclosure Date: April 26, 2021 (last updated February 22, 2025)
A weak password requirement vulnerability exists in the Create New User function of MintHCM RELEASE 3.0.8, which could lead an attacker to easier password brute-forcing.
0