ZeroHour

CVE-2017-1000059

CVSS 3.0
6.1 medium
EPSS
1%p65
Published
()
Modified
Description

Live Helper Chat version 2.06v and older is vulnerable to Cross-Site Scripting in the HTTP Header handling resulting in the execution of any user provided Javascript code in the session of other users.

Vendors
livehelperchat
Products
live helper chat
Weakness
CWE-79
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N

In the news

No ingested article mentions this CVE yet.