-
Type: Bug
-
Status: Open
-
Priority: Medium
-
Resolution: Unresolved
-
Affects Version/s: None
-
Fix Version/s: None
-
Component/s: None
-
Labels:
-
Environment:Production
-
Bug Severity:Low
-
Module:BenAdmin - Security
-
Reported by:Harbinger
[Security Test]
{Cross Site Scripting}
Server side validations are missing on First name last name filed on Add child and Add Spouse pages.
Error get displayed while adding script after bypassing the client side validation.
Test Environment: Production - VM 208...
Tool Used : Tamper Data
Malicious user can enter any scripts through application to generate Server Errors.