Synkron.Web HTML Injection Vulnerability...

- AV AC AU C I A
发布: 2003-06-06
修订: 2025-04-13

Synkron.web is prone to HTML injection attacks. The vulnerability exists in the search script and is a result of insufficient sanitization of malicious HTML code from user-supplied input. HTML and script code may be echoed back when an existing user is views a cached search page. Exploitation could allow for attacks that steal cookie-based authentication credentials.

0%
当前有1条漏洞利用/PoC
当前有0条受影响产品信息