CVE-2013-5744
28.10.2013, 22:55
Cross-site scripting (XSS) vulnerability in Feng Office 2.3.2-rc and earlier allows remote attackers to inject arbitrary web script or HTML via an arbitrary ref_XXX parameter.
Vendor | Product | Version |
---|---|---|
fengoffice | feng_office | 𝑥 ≤ 2.3.2 |
fengoffice | feng_office | 1.6.2 |
fengoffice | feng_office | 1.7 |
fengoffice | feng_office | 1.7:beta |
fengoffice | feng_office | 1.7:beta2 |
fengoffice | feng_office | 1.7:rc |
fengoffice | feng_office | 1.7:rc2 |
fengoffice | feng_office | 1.7:rc3 |
fengoffice | feng_office | 1.7.1 |
fengoffice | feng_office | 1.7.2 |
fengoffice | feng_office | 1.7.3.1 |
fengoffice | feng_office | 1.7.4 |
fengoffice | feng_office | 1.7.5 |
fengoffice | feng_office | 1.7.5:beta |
fengoffice | feng_office | 1.7.5:rc2 |
fengoffice | feng_office | 1.7.5:rc3 |
fengoffice | feng_office | 2.0.0 |
fengoffice | feng_office | 2.0.0:beta1 |
fengoffice | feng_office | 2.0.0:beta2 |
fengoffice | feng_office | 2.0.0:beta3 |
fengoffice | feng_office | 2.0.0:beta4 |
fengoffice | feng_office | 2.0.0:rc |
fengoffice | feng_office | 2.1.0 |
fengoffice | feng_office | 2.1.0:beta |
fengoffice | feng_office | 2.1.0:rc |
fengoffice | feng_office | 2.1.0:rc2 |
fengoffice | feng_office | 2.2.0 |
fengoffice | feng_office | 2.2.0:beta |
fengoffice | feng_office | 2.2.0:rc |
fengoffice | feng_office | 2.2.1 |
fengoffice | feng_office | 2.2.1:rc |
fengoffice | feng_office | 2.2.2 |
fengoffice | feng_office | 2.2.3.1 |
fengoffice | feng_office | 2.2.3.1:beta |
fengoffice | feng_office | 2.2.4 |
fengoffice | feng_office | 2.2.4:beta |
fengoffice | feng_office | 2.2.4.1 |
fengoffice | feng_office | 2.3 |
fengoffice | feng_office | 2.3:beta |
fengoffice | feng_office | 2.3:rc |
fengoffice | feng_office | 2.3:rc2 |
fengoffice | feng_office | 2.3.1 |
fengoffice | feng_office | 2.3.1:beta |
fengoffice | feng_office | 2.3.1:rc |
fengoffice | feng_office | 2.3.1.1 |
fengoffice | feng_office | 2.3.2:beta |
𝑥
= Vulnerable software versions