Description
Cross-site scripting (XSS) vulnerability in Eagle Software Aeries Browser Interface (ABI) 3.8.2.8 allows remote authenticated users to inject arbitrary web script or HTML via an event.
Affected products
- aeries / aeries_student_information_system3.7.2.2 – 3.7.2.2
- aeries / aeries_student_information_system3.8.2.8 – 3.8.2.8