Hello,
we have several application written with Scriptcase.
During a VAPT session, a vulnerability was found regarding the PDF library
Unauthenticated Cross-Site Scripting (XSS)
If you type in your browser the following link:
httpx://server_ip/app/_lib/prod/lib/php/nm_config_pdf.php?nm_target=
‘’
a pop-up appears for configuring pdf export
Is this something that can be solved?
Thank you very much