A reflected Cross-site scripting (XSS) vulnerability in ShoreTel Connect ONSITE 19.45.1602.0 allows remote attackers to inject arbitrary web script or HTML via the url parameter.
References
Configurations
Information
Published : 2019-03-06 16:29
Updated : 2019-04-08 20:29
NVD link : CVE-2019-9592
Mitre link : CVE-2019-9592
JSON object : View
Products Affected
mitel
- connect_onsite
CWE
CWE-79
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
