Vulnerabilities > CVE-2023-3726 - Unspecified vulnerability in Ocsinventory-Ng Ocsinventory-Ocsreports 2.12.0

047910
CVSS 6.9 - MEDIUM
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
HIGH
Confidentiality impact
HIGH
Integrity impact
LOW
Availability impact
NONE
network
low complexity
ocsinventory-ng

Summary

OCSInventory allow stored email template with special characters that lead to a Stored cross-site Scripting.

Vulnerable Configurations

Part Description Count
Application
Ocsinventory-Ng
1