Stored cross-site scripting vulnerability exists in the User Management (/admin/users) page of GROWI versions prior to v6.1.11. If this vulnerability is exploited, an arbitrary script may be executed on the web browser of the user who accessed the site using the product.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: jpcert

Published: 2023-12-26T07:20:31.556Z

Updated: 2024-09-09T18:00:25.425Z

Reserved: 2023-12-07T02:39:54.055Z

Link: CVE-2023-50339

cve-icon Vulnrichment

Updated: 2024-08-02T22:16:46.697Z

cve-icon NVD

Status : Analyzed

Published: 2023-12-26T08:15:11.657

Modified: 2024-01-02T19:54:22.700

Link: CVE-2023-50339

cve-icon Redhat

No data.