CVE-2025-29689 | hailey888 oa_system prior 2025.01.01 MailController.java Password cross site scripting (EUVD-2025-14876)
A vulnerability classified as problematic has been found in hailey888 oa_system. This affects an unknown part of the file /mail/MailController.java. The manipulation of the argument Password leads to cross site scripting.
This vulnerability is uniquely identified as CVE-2025-29689. It is possible to initiate the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.