CVE-2021-40292
A Stored Cross Site Sripting (XSS) vulnerability exists in DzzOffice 2.02.1 via the settingnew parameter.
A Stored Cross Site Sripting (XSS) vulnerability exists in DzzOffice 2.02.1 via the settingnew parameter.
MEDIUM · CVSS 5.4
EPSS 0.00261
Schedule remediation
- Public exploit or PoC is available
Sigma rules0
YARA rules0