Data input into EMS Master Calendar prior to 8.0.0.201805210 via URL parameters is not properly sanitized, allowing malicious malicious users to send a crafted URL for XSS.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
emssoftware ems master calendar |