An XSS issue exists in Enghouse Web Chat 6.1.300.31 and 6.2.284.34. The QueueName parameter of a GET request allows for insertion of user-supplied JavaScript.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
enghouse web chat 6.1.300.31 |
||
enghouse web chat 6.2.284.34 |