Eramba e1.0.6.033 has Reflected XSS on the Error page of the CSV file inclusion tab of the /importTool/preview URI, with a CSV file polluted with malicious JavaScript.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2018-03-09T16:00:00Z
Updated: 2024-09-16T21:57:17.712Z
Reserved: 2018-03-09T00:00:00Z
Link: CVE-2018-7997
Vulnrichment
No data.
NVD
Status : Analyzed
Published: 2018-03-09T16:29:00.987
Modified: 2018-03-27T15:09:06.010
Link: CVE-2018-7997
Redhat
No data.