Security Advisory

CVE-2020-28945

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2021-05-03 19:38:27
Last updated 2024-08-04 16:47:59
Assigner mitre
State PUBLISHED

Description

OX App Suite 7.10.4 and earlier allows XSS via crafted content to reach an undocumented feature, such as ![](http://onerror=Function.constructor, in a Notes item.