Beveiligingsadvies
CVE-2017-13671
CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations
Beschrijving
app/View/Helper/CommandHelper.php in MISP before 2.4.79 has persistent XSS via comments. It only impacts the users of the same instance because the comment field is not part of the MISP synchronisation.