Cross-site scripting (XSS) vulnerability in the Good for Enterprise app before 2.2.4.1659 for iOS allows remote attackers to inject arbitrary web script or HTML via an HTML e-mail message.
References
Link | Resource |
---|---|
http://archives.neohapsis.com/archives/bugtraq/2013-09/0114.html | Exploit |
https://www.roblest.com/#research:CVE-2013-5118 | Exploit |
Configurations
Configuration 1 (hide)
|
Information
Published : 2013-09-25 03:31
Updated : 2013-09-25 15:57
NVD link : CVE-2013-5118
Mitre link : CVE-2013-5118
JSON object : View
CWE
CWE-79
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
Products Affected
good
- good_for_enterprise