CVE-2017-13671
24.08.2017, 19:29
app/View/Helper/CommandHelper.php in MISP before 2.4.79 has persistent XSS via comments. It only impacts the users of the same instance because the comment field is not part of the MISP synchronisation.
| Vendor | Product | Version |
|---|---|---|
| misp | misp | 𝑥 ≤ 2.4.78 |
𝑥
= Vulnerable software versions