Splicecom Maximiser Soft PBX v1.5 and before was...
Moderate severity
Unreviewed
Published
Jan 25, 2024
to the GitHub Advisory Database
•
Updated Feb 9, 2024
Description
Published by the National Vulnerability Database
Jan 25, 2024
Published to the GitHub Advisory Database
Jan 25, 2024
Last updated
Feb 9, 2024
Splicecom Maximiser Soft PBX v1.5 and before was discovered to contain a cross-site scripting (XSS) vulnerability via the CLIENT_NAME and DEVICE_GUID fields in the login component.
References