CVE-2014-1223
27.02.2014, 15:55
Cross-site scripting (XSS) vulnerability in controlpanel/loading.aspx in Telligent Evolution before 6.1.19.36103, 7.x before 7.1.12.36162, 7.5.x, and 7.6.x before 7.6.7.36651 allows remote attackers to inject arbitrary web script or HTML via the msg parameter. NOTE: some of these details are obtained from third party information.
Vendor | Product | Version |
---|---|---|
telligent | evolution | 6.1 ≤ 𝑥 < 6.1.19.36103 |
telligent | evolution | 7.1 ≤ 𝑥 < 7.1.12.36162 |
telligent | evolution | 7.5 ≤ 𝑥 ≤ 7.5.0.32466 |
telligent | evolution | 7.6 ≤ 𝑥 < 7.6.7.36651 |
𝑥
= Vulnerable software versions
References