CVE-2015-4699
24.08.2017, 21:29
Cross-site scripting (XSS) vulnerability in the Splash Portal in Cloud4Wi before 5.9.7 allows remote attackers to inject arbitrary web script or HTML via the recoveryMessage parameter to the default URI.
| Vendor | Product | Version |
|---|---|---|
| cloud4wi | splash_portal | 5.9.6 |
𝑥
= Vulnerable software versions
References