CVE-2024-31401

Cross-site scripting vulnerability in Cybozu Garoon 5.0.0 to 5.15.2 allows a remote authenticated attacker with an administrative privilege to inject an arbitrary script on the web browser of the user who is logging in to the product.
Configurations

No configuration.

History

No history.

Information

Published : 2024-06-11 05:15

Updated : 2024-07-03 01:54


NVD link : CVE-2024-31401

Mitre link : CVE-2024-31401

CVE.ORG link : CVE-2024-31401


JSON object : View

Products Affected

No product.

CWE
CWE-79

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')