CVE-2018-8924
EUVD-2018-2053205.06.2018, 14:29
Cross-site scripting (XSS) vulnerability in Title Tootip in Synology Office before 3.0.3-2143 allows remote authenticated users to inject arbitrary web script or HTML via the malicious file name.
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| synology | office | 𝑥 < 3.0.3-2143 |
𝑥
= Vulnerable software versions