CVE-2017-2255
CVE-2017-2255
Vexday Risk Score
3Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS —EPSS 0.5%KEV nãoPoC —Nuclei —Metasploit —Patch —
Lifecycle
28 Aug 2017Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
Cross-site scripting vulnerability in Cybozu Garoon 3.7.0 to 4.2.5 allows an attacker to inject arbitrary web script or HTML via "Rich text" function of the application "Space".
Affected products
Cybozu, Inc. · Cybozu GaroonWant to know if your infrastructure is exposed to this?
Talk to TrueHacking →