cve/2020/CVE-2020-24601.md
2024-05-25 21:48:12 +02:00

783 B

CVE-2020-24601

Description

In Ignite Realtime Openfire 4.5.1 a Stored Cross-site Vulnerability allows an attacker to execute an arbitrary malicious URL via the vulnerable POST parameter searchName", "alias" in the import certificate trusted page

POC

Reference

Github