CVE-2019-11643

CVE-2019-11643

Persistent XSS has been found in the OneShield Policy (Dragon Core) framework before 5.1.10. Remote adversaries can inject malicious JavaScript into textboxes decorated with type string, which is subsequently stored to the applicable data store. This can be exploited remotely by both authenticated and unauthenticated users.

Source: CVE-2019-11643

답글 남기기

이메일 주소는 공개되지 않습니다. 필수 필드는 *로 표시됩니다