Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2022-77955
HistoryMay 07, 2022 - 12:00 a.m.

Cyclos 4 PRO Cross-Site Scripting Vulnerability

2022-05-0700:00:00
China National Vulnerability Database
www.cnvd.org.cn
9
cyclos 4 pro
cross-site scripting
vulnerability
version 4.14.7
remote attackers
arbitrary web scripts
html
groupid parameter

EPSS

0.004

Percentile

73.1%

Cyclos 4 PRO is a web server. A cross-site scripting vulnerability exists in Cyclos 4 PRO version 4.14.7 and earlier, which can be exploited by remote attackers to inject arbitrary web scripts or HTML via the groupId parameter.

EPSS

0.004

Percentile

73.1%