PT-2026-99809 · Bimser Solution Software Trade · Eba Document/Workflow Management System
CVE-2026-82969
·
Published
2026-09-28
·
Updated
2026-09-28
CVSS v3.1
5.4
Medium
| Vector | AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:N |
Name of the Vulnerable Software and Affected Versions
eBA Plus Document and Workflow Management System versions 6.7.141 through 10.0.10
Description
Improper neutralization of input during web page generation in the Bimser Solution Software Trade Inc. EBA Plus Document and Workflow Management System allows for Stored Cross-Site Scripting (XSS). Stored XSS occurs when an application receives data from a user and includes that data within its later HTTP responses in an unsafe way, allowing a malicious script to be permanently stored on the server.
Recommendations
Update eBA Plus Document and Workflow Management System to version 10.0.11.
Fix
XSS
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Eba Document/Workflow Management System