PT-2022-7899 · Humhub · Humhub
Tim Coen
·
Published
2022-06-09
·
Updated
2022-06-17
·
CVE-2017-20026
CVSS v3.1
6.1
Medium
| Vector | AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N |
Name of the Vulnerable Software and Affected Versions
HumHub versions up to 1.0.1
Description
A vulnerability has been found in an unknown functionality of the software, leading to cross site scripting (Reflected). The attack can be launched remotely. The exploit has been disclosed to the public and may be used.
Recommendations
For HumHub versions up to 1.0.1, upgrade to version 1.1.1 to address this issue.
It is recommended to upgrade the affected component.
Exploit
Fix
XSS
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Humhub