[email protected] – eZ Systems eZ Platform: Cross Site Scripting via User Preferences, analyzed on 06/03/2020

CERT-LatestNews ThreatsCybercrime VulnerabilitiesAll VulnerabilitiesApplications VulnerabilitiesNetwork
Synthesis of the vulnerability An attacker can trigger a Cross Site Scripting via User Preferences of eZ Systems eZ Platform, in order to run JavaScript code in the context of the web site. Vulnerable software:Severity of this announce: 2/4. Creation date: 06/03/2020. Références of this computer vulnerability: VIGILANCE-VUL-31741.