CVE Published: 11/07/2018 |
CVE Updated: 05/08/2024 |
CVE Year: 2018 Source: microsoft |
Vendor: Microsoft |
Product: Web Customizations Status : PUBLISHED
CVE-2018-8326 Description
A cross-site-scripting (XSS) vulnerability exists when an open source customization for Microsoft Active Directory Federation Services (AD FS) does not properly sanitize a specially crafted web request to an affected AD FS server, aka "Open Source Customization for Active Directory Federation Services XSS Vulnerability." This affects Web Customizations.