Cross-site scripting (XSS) vulnerability in ProjectForge prior to 3.5.3 allows remote authenticated users to inject arbitrary web script or HTML via a validation message.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
projectforge projectforge 3.4.0 |
||
projectforge projectforge |
||
projectforge projectforge 3.4.1 |
||
projectforge projectforge 3.5.1 |
||
projectforge projectforge 3.5.0 |
||
projectforge projectforge 3.4.3 |
||
projectforge projectforge 3.4.2 |