GHSA-x493-7fm3-mc5qMediumCVSS 6.1

Cyclos 4 PRO 4.14.7 and before does not validate user input at error inform, which allows remote...

Published
May 3, 2022
Last Modified
July 5, 2026

🔗 CVE IDs covered (1)

📋 Description

Cyclos 4 PRO 4.14.7 and before does not validate user input at error inform, which allows remote unauthenticated attacker to execute javascript code via undefine enum constant.

🔗 References (6)