CVE-2018-12651: Myadrenalin Human Resource Management Software

Medium severity, CVSS 6.1. EPSS: 0.9% chance of exploitation in the next 30 days.

A Reflected Cross Site Scripting (XSS) Vulnerability was discovered in Adrenalin 5.4 HRMS Software. The user supplied input containing JavaScript is echoed back in JavaScript code in an HTML response via the ShiftEmployeeSearch.aspx prntFrmName or prntDDLCntrlName parameter.

Affected products

  • Myadrenalin Human Resource Management Software: version 5.4.0 only

Published 2018-12-20. Last modified 2026-06-17.