GHSA-7rcg-qcqc-wfpxMedium
Tobit Laboratories AG TeamDavid's Webbox application contains a reflected cross-site scripting ...
🔗 CVE IDs covered (1)
📋 Description
Tobit Laboratories AG TeamDavid's Webbox application contains a reflected cross-site scripting (XSS) vulnerability. By sending a specially crafted link including an arbitrary path, an XSS payload or the parameter “EntryInfo”, and the parameter “!templateName=entryMail”, an attacker can cause the payload to execute in the victim’s browser when they click the link. This issue affects TeamDavid through Rollout 524.