Files
CVEs-PoC/2020/CVE-2020-8496.md
T
2025-09-29 21:09:30 +02:00

706 B

CVE-2020-8496

Description

In Kronos Web Time and Attendance (webTA) 4.1.x and later 4.x versions before 5.0, there is a Stored XSS vulnerability by setting the Application Banner input field of the /ApplicationBanner page as an authenticated administrator.

POC

Reference

Github

No PoCs found on GitHub currently.