"value":"A vulnerability has been discovered in BigProf Online Clinic Management System 2.2, which does not sufficiently encode user-controlled input, resulting in persistent XSS through /clinic/disease_symptoms_view.php, in the FirstRecord parameter. Exploitation of this vulnerability could allow an attacking user to store dangerous JavaScript payloads on the system that will be triggered when the page loads."
"value":"Se ha descubierto una vulnerabilidad en BigProf Online Clinic Management System 2.2, que no codifica suficientemente la entrada controlada por el usuario, lo que genera XSS persistente a trav\u00e9s de /clinic/disease_symptoms_view.php, en el par\u00e1metro FirstRecord. La explotaci\u00f3n de esta vulnerabilidad podr\u00eda permitir a un usuario atacante almacenar payloads de JavaScript peligrosos en el sistema que se activar\u00e1n cuando se cargue la p\u00e1gina."