CVE-2021-37470
25.07.2021, 21:15
In NCH WebDictate v2.13, persistent Cross Site Scripting (XSS) exists in the Recipient Name field. An authenticated user can add or modify the affected field to inject arbitrary JavaScript.
Vendor | Product | Version |
---|---|---|
nchsoftware | webdictate | 𝑥 ≤ 2.13 |
𝑥
= Vulnerable software versions