Description
Cross-site scripting vulnerability exists in Group Office prior to v6.6.182, prior to v6.7.64 and prior to v6.8.31, which may allow a remote authenticated attacker to execute an arbitrary script on the web browser of the user who is logging in to the product.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-21371 | Cross-site scripting vulnerability exists in Group Office prior to v6.6.182, prior to v6.7.64 and prior to v6.8.31, which may allow a remote authenticated attacker to execute an arbitrary script on the web browser of the user who is logging in to the product. |
References
History
Wed, 04 Jun 2025 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: jpcert
Published:
Updated: 2025-06-04T15:25:00.832Z
Reserved: 2024-01-24T01:34:18.418Z
Link: CVE-2024-23941
Updated: 2024-08-01T23:13:08.804Z
Status : Modified
Published: 2024-02-01T04:15:49.967
Modified: 2025-06-04T16:15:35.160
Link: CVE-2024-23941
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD