CVE
- Id
- 104035
- CVE No.
- CVE-2017-7215
- Status
- Candidate
- Description
- Cross site scripting in some view elements in the index filter tool in app/webroot/js/misp2.4.68.js and the organisation landing page in app/View/Organisations/ajax/landingpage.ctp of MISP before 2.4.69 allows remote attackers to inject arbitrary web script or HTML.
- Phase
- Assigned (20170321)
- Votes
- None (candidate not yet proposed)
- Comments