Cross-site scripting (XSS) vulnerability in index.php for Kayako ESupport 2.3.1, and possibly other versions, allows remote malicious users to inject arbitrary HTML and web script via the nav parameter.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
kayako esupport 2.3.1 |