Cross-site scripting vulnerability in GROWI v.3.1.11 and previous versions allows remote authenticated malicious users to inject arbitrary web script or HTML via the UserGroup Management section of admin page.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
weseek growi |