esoTalk 1.0.0g4: XSS

Posted by Curesec Research Team (CRT) on Dec 23

Security Advisory – Curesec Research Team

1. Introduction

Affected Product: esoTalk 1.0.0g4
Fixed in: not fixed
Fixed Version Link: n/a
Vendor Contact: toby () esotalk org
Vulnerability Type: XSS
Remote Exploitable: Yes
Reported to vendor: 11/17/2015
Disclosed to public: 12/21/2015
Release mode: Full Disclosure
CVE: n/a
Credits Tim Coen of Curesec GmbH

2. Overview

CVSS

Medium 4.3…

Leave a Reply