CVE Published: 01/02/2024 |
CVE Updated: 01/08/2024 |
CVE Year: 2024 Source: jpcert |
Vendor: Intermesh BV |
Product: Group Office Status : PUBLISHED
CVE-2024-23941 Description
Cross-site scripting vulnerability exists in Group Office prior to v6.6.182, prior to v6.7.64 and prior to v6.8.31, which may allow a remote authenticated attacker to execute an arbitrary script on the web browser of the user who is logging in to the product.