CVE-2020-22985
12.05.2022, 20:15
Cross-Site Scripting (XSS) vulnerability in MicroStrategy Web SDK 10.11 and earlier, allows remote unauthenticated attackers to execute arbitrary code via the key parameter to the getESRIExtraConfig task.
Vendor | Product | Version |
---|---|---|
microstrategy | microstrategy_web_sdk | 𝑥 ≤ 10.11 |
𝑥
= Vulnerable software versions
References