"value":"Multiple cross-site scripting (XSS) vulnerabilities in Zoho ManageEngine SupportCenter Plus 7.90 allow remote authenticated users to inject arbitrary web script or HTML via the (1) query parameter in the run_query_editor_query module to CustomReportHandler.do, (2) compAcct parameter to jsp/ResetADPwd.jsp, or (3) redirectTo parameter to jsp/CacheScreenWidth.jsp."
},
{
"lang":"es",
"value":"M\u00faltiples vulnerabilidades de XSS en Zoho ManageEngine SupportCenter Plus 7.90 permiten a usuarios remotos autenticados inyectar secuencias de comandos web arbitrarios o HTML a trav\u00e9s (1) del par\u00e1metro query en el m\u00f3dulo run_query_editor_query en CustomReportHandler.do, (2) del par\u00e1metro compAcct en jsp/ResetADPwd.jsp, o (3) del par\u00e1metro redirectTo en jsp/CacheScreenWidth.jsp."