CVE-2017-5631: Kmc Information Systems Caseaware

Medium severity, CVSS 6.1. EPSS: 4.5% chance of exploitation in the next 30 days.

An issue was discovered in KMCIS CaseAware. Reflected cross site scripting is present in the user parameter (i.e., "usr") that is transmitted in the login.php query string.

Affected products

Published 2017-05-01. Last modified 2026-06-17.