Security Advisory

CVE-2017-13671

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2017-08-24 19:00:00
Last updated 2024-08-05 19:05:19
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

app/View/Helper/CommandHelper.php in MISP before 2.4.79 has persistent XSS via comments. It only impacts the users of the same instance because the comment field is not part of the MISP synchronisation.