Cross-site scripting (XSS) vulnerability in Twonky Server 7.0.11 up to and including 8.5 allows remote malicious users to inject arbitrary web script or HTML via the friendlyname parameter to rpc/set_all.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
lynxtechnology twonky server |