ASG technologies ASG-Zena Cross Platform Server Enterprise Edition 4.2.1 is vulnerable to Cross Site Scripting (XSS).
The product does not neutralize or incorrectly neutralizes user-controllable input before it is placed in output that is used as a web page that is served to other users.
Link | Tags |
---|---|
http://asg-zena.com | broken link url repurposed |
http://asg.com | product |
https://docs.rocketsoftware.com/bundle/ven1649700711249/page/ayk1652945111726.html | release notes vendor advisory |