Security Advisory

CVE-2019-11825

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2019-06-30 15:00:18
Last updated 2024-09-16 20:03:10
Assigner synology
State PUBLISHED

Description

Cross-site scripting (XSS) vulnerability in Event Editor in Synology Calendar before 2.3.0-0615 allows remote attackers to inject arbitrary web script or HTML via the title parameter.