CVE-2017-15216

Publication date

2017-10-10 18:00:00

Family

mitre

State

PUBLISHED

Description

MISP before 2.4.81 has a potential reflected XSS in a quickDelete action that is used to delete a sighting, related to app/View/Sightings/ajax/quickDeleteConfirmationForm.ctp and app/webroot/js/misp.js.