Parallels H-Sphere 3.6.1713 allows XSS via the index_en.php from parameter.
References
Link | Resource |
---|---|
https://en.wikipedia.org/wiki/H-Sphere | Product |
https://medium.com/@bhattronit96/cve-2022-30777-45725763ab59 | Exploit Third Party Advisory |
Configurations
Information
Published : 2022-05-16 07:15
Updated : 2022-05-25 06:57
NVD link : CVE-2022-30777
Mitre link : CVE-2022-30777
JSON object : View
CWE
CWE-79
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
Products Affected
parallels
- h-sphere