app/View/Helper/CommandHelper.php in MISP before 2.4.79 has persistent XSS via comments. It only impacts the users of the same instance because the comment field is not part of the MISP synchronisation.
Metrics
Affected Vendors & Products
References
History
No history.
Status: PUBLISHED
Assigner: mitre
Published: 2017-08-24T19:00:00.000Z
Updated: 2024-08-05T19:05:19.163Z
Reserved: 2017-08-24T00:00:00.000Z
Link: CVE-2017-13671
No data.
Status : Deferred
Published: 2017-08-24T19:29:00.250
Modified: 2025-04-20T01:37:25.860
Link: CVE-2017-13671
No data.