Beveiligingsadvies

CVE-2017-13671

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2017-08-24 19:00:00
Laatst bijgewerkt 2024-08-05 19:05:19
Toegewezen door mitre
CVSS-score geen score
Status PUBLISHED

Beschrijving

app/View/Helper/CommandHelper.php in MISP before 2.4.79 has persistent XSS via comments. It only impacts the users of the same instance because the comment field is not part of the MISP synchronisation.