"value":"A vulnerability in NetCat CMS allows an attacker to execute JavaScript code in a user's browser when they visit specific paths on the site.\nThis issue affects NetCat CMS v. 6.4.0.24126.2 and possibly others.\n\nApply patch from vendor https://netcat.ru/ https://netcat.ru/] . Versions 6.4.0.24248 and on have the patch."
}
]
},
"problemtype":{
"problemtype_data":[
{
"description":[
{
"lang":"eng",
"value":"CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')",
"value":"Apply patch from vendor <a target=\"_blank\" rel=\"nofollow\" href=\"https://netcat.ru/]\">https://netcat.ru/</a>. Versions 6.4.0.24248 and on have the patch. <br>"
}
],
"value":"Apply patch from vendor https://netcat.ru/ https://netcat.ru/] . Versions 6.4.0.24248 and on have the patch."
}
],
"credits":[
{
"lang":"en",
"value":"The vulnerability was discovered by Evgeny Velikoivanenko from Kaspersky (https://kaspersky.com)"