Security Advisory

CVE-2024-23941

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2024-02-01 03:56:12
Last updated 2025-06-04 15:25:00
Assigner jpcert
CVSS score not scored
State PUBLISHED

Description

Cross-site scripting vulnerability exists in Group Office prior to v6.6.182, prior to v6.7.64 and prior to v6.8.31, which may allow a remote authenticated attacker to execute an arbitrary script on the web browser of the user who is logging in to the product.