CVE-2022-34007
CVE-2022-34007
EQS Integrity Line Professional through 2022-07-01 allows a stored XSS via a crafted whistleblower entry.
Produtos afetados
n/a · n/aQuer saber se a sua infraestrutura está exposta a isto?
Falar com a TrueHacking →Referências
https://eusanctions.integrityline.comhttps://packetstormsecurity.com/files/167706/EQS-Integrity-Line-Cross-Site-Scripting-Information-Disclosure.htmlhttps://seclists.org/fulldisclosure/2022/Jul/1https://whistleblowingnetwork.org/Our-Work/Spotlight/Stories/The-Pitfalls-of-Closed-Source-Whistleblowing-Softwhttps://www.integrityline.com/https://www.ush.it/team/ush/advisory-eqs-integrity-line/eqs_integrity_line.txt