CVE-2026-3993
MEDIUMitsourcecode Payroll Management System 1.0 - XSS
Title source: llmDescription
A security vulnerability has been detected in itsourcecode Payroll Management System 1.0. This vulnerability affects unknown code of the file /manage_employee_deductions.php. Such manipulation of the argument ID leads to cross site scripting. The attack may be launched remotely. The exploit has been disclosed publicly and may be used.
References (5)
Scores
CVSS v3
4.3
EPSS
0.0004
EPSS Percentile
11.6%
Attack Vector
NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N
Details
CWE
CWE-79
CWE-94
Status
published
Published
Mar 12, 2026
Tracked Since
Mar 12, 2026