Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:35106
HistoryApr 14, 2022 - 9:05 a.m.

Cross-site Scripting (XSS)

2022-04-1409:05:31
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
8
froxlor
cross-site scripting
input sanitization
vulnerability
html tags
login webpage

EPSS

0.001

Percentile

32.6%

froxlor/froxlor is vulnerable to cross-site scripting. The vulnerability exists due to a lack of sanitization of input via the customermail GET parameter allowing an attacker to input HTML tags which will be reflected in the login webpage.

EPSS

0.001

Percentile

32.6%

Related for VERACODE:35106