PeopleSoft Human Resources Management System (HRMS) is reported prone to a cross-site scripting vulnerability. This issue exists due to insufficient sanitization of user-supplied data and may allow a remote attacker to execute arbitrary script code in a vulnerable user's browser. This issue presents itself in some unspecified debugging and utility scripts that are supplied with the default installation. It is reported that successful exploitation of this issue can disclose sensitive data to an attacker. This vulnerability is reported to affect HRMS version 7.0, however, it is possible that other versions are affected as well.
PeopleSoft Human Resources Management System (HRMS) is reported prone to a cross-site scripting vulnerability. This issue exists due to insufficient sanitization of user-supplied data and may allow a remote attacker to execute arbitrary script code in a vulnerable user's browser. This issue presents itself in some unspecified debugging and utility scripts that are supplied with the default installation. It is reported that successful exploitation of this issue can disclose sensitive data to an attacker. This vulnerability is reported to affect HRMS version 7.0, however, it is possible that other versions are affected as well.