cve/2019/CVE-2019-8927.md
2024-06-18 02:51:15 +02:00

994 B

CVE-2019-8927

Description

An issue was discovered in Zoho ManageEngine Netflow Analyzer Professional 7.0.0.2. XSS exists in the Administration zone /netflow/jspui/scheduleConfig.jsp file via these GET parameters: devSrc, emailId, excWeekModify, filterFlag, getFilter, mailReport, mset, popup, rep_schedule, rep_Type, schDesc, schName, schSource, selectDeviceDone, task, val10, and val11.

POC

Reference

Github

No PoCs found on GitHub currently.