TROYANOSYVIRUS
Voltar para CVEs

CVE-2017-18024

N/A

Descricao

AvantFAX 3.3.3 has XSS via an arbitrary parameter name to the default URI, as demonstrated by a parameter whose name contains a SCRIPT element and whose value is 1.

Detalhes CVE

Pontuacao CVSS v3.1N/A
Publicado1/10/2018
Ultima modificacao11/21/2024
Fontenvd
Avistamentos honeypot0

Produtos afetados

avantfax:avantfax

Fraquezas (CWE)

CWE-79

Correlacoes IOC

Sem correlacoes registradas

This product uses data from the NVD API but is not endorsed or certified by the NVD.