Cross-site scripting (XSS) vulnerability in sources/users.queries.php in TeamPass prior to 2.1.6 allows remote authenticated users to inject arbitrary web script or HTML via the login parameter in an add_new_user action.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
teampass teampass 2.1 |
||
teampass teampass 2.1.4 |
||
teampass teampass 2.1.3 |
||
teampass teampass |
||
teampass teampass 2.1.2 |
||
teampass teampass 2.1.1 |