CVE-2017-13671
EUVD-2017-518824.08.2017, 19:29
app/View/Helper/CommandHelper.php in MISP before 2.4.79 has persistent XSS via comments. It only impacts the users of the same instance because the comment field is not part of the MISP synchronisation.
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| misp | misp | 𝑥 ≤ 2.4.78 |
𝑥
= Vulnerable software versions