mirror of
https://github.com/0xMarcio/cve.git
synced 2026-05-26 21:52:25 +02:00
692 B
692 B
CVE-2018-14905
Description
The Web server in 3CX version 15.5.8801.3 is vulnerable to Reflected XSS on the api/CallLog TimeZoneName parameter.
POC
Reference
- https://medium.com/stolabs/security-issues-on-3cx-web-service-d9dc7f1bea79
- https://medium.com/stolabs/security-issues-on-3cx-web-service-d9dc7f1bea79