CVE-2021-3318
attach/ajax.php in DzzOffice through 2.02.1 allows XSS via the editorid parameter.
attach/ajax.php in DzzOffice through 2.02.1 allows XSS via the editorid parameter.
MEDIUM · CVSS 6.1
EPSS 0.00303
Schedule remediation
- Public exploit or PoC is available
Sigma rules0
YARA rules0