CVE-2018-12652: Myadrenalin Adrenalin

Medium severity, CVSS 6.1. EPSS: 0.9% chance of exploitation in the next 30 days.

A Reflected Cross Site Scripting (XSS) Vulnerability was discovered in Adrenalin 5.4 HRMS Software. The user supplied input containing JavaScript is echoed back in JavaScript code in an HTML response via the LeaveEmployeeSearch.aspx prntFrmName or prntDDLCntrlName parameter.

Affected products

Published 2019-03-25. Last modified 2026-06-17.