lib/Zonemaster/GUI/Dancer/Export.pm in Zonemaster Web GUI before 1.0.11 has XSS.
References
Link | Resource |
---|---|
https://github.com/dotse/zonemaster-gui/releases/tag/v1.0.11 | Release Notes Third Party Advisory |
https://github.com/dotse/zonemaster-gui/pull/218 | Patch Third Party Advisory |
https://github.com/dotse/zonemaster-gui/issues/217 | Issue Tracking Third Party Advisory |
https://github.com/dotse/zonemaster-gui/commit/568e8db44930fda4563c1e708a2440909fd8e5fe | Patch Third Party Advisory |
Configurations
Information
Published : 2018-03-03 17:29
Updated : 2020-04-30 13:04
NVD link : CVE-2018-7652
Mitre link : CVE-2018-7652
JSON object : View
CWE
CWE-79
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
Products Affected
zonemaster
- zonemaster_web_gui