A Stored Cross-Site Scripting (XSS) vulnerability in DivvyDrive's "aciklama" parameter could allow anyone to gain users' session informations.
References
Link | Resource |
---|---|
https://www.usom.gov.tr/bildirim/tr-22-0375 | Third Party Advisory |
Configurations
Information
Published : 2022-05-23 07:16
Updated : 2022-06-02 16:18
NVD link : CVE-2022-0900
Mitre link : CVE-2022-0900
JSON object : View
CWE
CWE-79
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
Products Affected
netdatasoft
- divvy_drive