CVE-2012-4872
06.09.2012, 21:55
Cross-site scripting (XSS) vulnerability in Tickets/Submit in Kayako Fusion before 4.40.985 allows remote attackers to inject arbitrary web script or HTML via certain vectors, possibly a crafted ticket description.
Vendor | Product | Version |
---|---|---|
kayako | kayako_fusion | 𝑥 ≤ 4.40.959 |
𝑥
= Vulnerable software versions
References