CVE-2017-14973

Publication date

2017-10-09 05:00:00

Family

mitre

State

PUBLISHED

Description

IDenticard Two-Reader Controller Configuration Manager 1.18.8 (396) is vulnerable to Stored Cross-Site Scripting (XSS) via the notes field in /~user_handler?file=logged_in.shtm (aka the edit user page).