Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
An issue was discovered in eGroupWare 17.1.20190111. A cross-site scripting Reflected (XSS) vulnerability exists in calendar/freebusy.php, which allows unauthenticated remote attackers to inject arbitrary web script or HTML into the "user" HTTP/GET parameter, which reflects its input without sanitization.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
EGroupware 安全漏洞
Vulnerability Description
EGroupware是EGroupware公司的一个在线办公平台。 EGroupware 17.1.20190111版本存在安全漏洞,该漏洞源于calendar/freebusy.php存在反射型跨站脚本,可能导致未经验证的远程攻击者注入任意Web脚本或HTML。
CVSS Information
N/A
Vulnerability Type
N/A