Home
Description
A stored cross-site scripting (XSS) vulnerability in the New Goal Creation section of Volmarg Personal Management System v1.4.65 allows authenticated attackers to execute arbitrary web scripts or HTML via injecting a crafted payload into the description parameter.
References
medium.com/...olmarg-personal-management-system-6cb0b9d6fe88
www.getastra.com/...s-in-volmarg-personal-management-system/