CVE-2024-37623
Xinhu RockOA v2.6.3 was discovered to contain a reflected cross-site scripting (XSS) vulnerability via the /kaoqin/tpl_k
Xinhu RockOA v2.6.3 was discovered to contain a reflected cross-site scripting (XSS) vulnerability via the /kaoqin/tpl_kaoqin_locationchange.html component.
MEDIUM · CVSS 6.1
EPSS 0.0081
Schedule remediation
- Public exploit or PoC is available
Sigma rules0
YARA rules0