CVE Details
Basic Information
| Title | CVE-2023-24065 |
|---|---|
| Type | cve |
| Published | 2023-01-29T00:00:00.000Z |
| Modified | 2025-03-28T15:34:17.348Z |
Product Information
| Vendor | n/a |
|---|---|
| Product | n/a |
| Version | n/a |
CVSS Information
| Base Score | 0.0 () |
|---|
Affected Products
- n/a n/a n/a
Additional Information
| Source | mitre |
|---|
Description
NOSH 4a5cfdb allows stored XSS via the create user page. For example, a first name (of a physician, assistant, or billing user) can have a JavaScript payload that is executed upon visiting the /users/2/1 page. This may allow attackers to steal Protected Health Information because the product is for health charting.