• caglararli@hotmail.com
  • 05386281520

CVE-2024-0718 | liuwy-dlsdys zhglxt 4.7.7 HTTP POST Request /oa/notify/edit notifyTitle cross site scripting

Çağlar Arlı      -    33 Views

CVE-2024-0718 | liuwy-dlsdys zhglxt 4.7.7 HTTP POST Request /oa/notify/edit notifyTitle cross site scripting

A vulnerability, which was classified as problematic, has been found in liuwy-dlsdys zhglxt 4.7.7. This issue affects some unknown processing of the file /oa/notify/edit of the component HTTP POST Request Handler. The manipulation of the argument notifyTitle leads to cross site scripting. The identification of this vulnerability is CVE-2024-0718. The attack may be initiated remotely. Furthermore, there is an exploit available.