Security Advisory

CVE-2022-39027

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2022-10-31 06:40:39
Last updated 2025-05-06 15:33:51
Assigner twcert
State PUBLISHED

Description

U-Office Force Forum function has insufficient filtering for special characters. A remote attacker with general user privilege can inject JavaScript and perform XSS (Stored Cross-Site Scripting) attack.