SZ NetChat before 7.9 has XSS in the MyName input field of the Options module. Attackers are able to inject commands to compromise the enabled HTTP server web frontend.
References
Link Resource
https://www.vulnerability-lab.com/get_content.php?id=2171 Patch Third Party Advisory
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: mitre

Published: 2022-10-03T16:22:06

Updated: 2022-10-03T16:22:06

Reserved: 2022-10-03T00:00:00


Link: CVE-2018-20370

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2018-12-23T02:29:00.390

Modified: 2019-01-09T17:47:56.710


Link: CVE-2018-20370

JSON object: View

cve-icon Redhat Information

No data.

CWE