Cross-site scripting vulnerability in GROWI v.3.1.11 and previous versions allows remote authenticated malicious users to inject arbitrary web script or HTML via the app settings section of admin page.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
weseek growi |