Cross-site scripting (XSS) vulnerability in SpiceWorks prior to 7.2.00195 allows remote authenticated users to inject arbitrary web script or HTML via the Summary field in a ticket request to the portal page.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
spiceworks spiceworks |
||
spiceworks spiceworks 7.2.00189 |
||
spiceworks spiceworks 7.2.00174 |