Cross-Site Scripting in ntopng Products by ntop
CVE-2017-7416
6.1MEDIUM
What is CVE-2017-7416?
A cross-site scripting vulnerability exists in ntopng versions prior to 3.0, which allows attackers to inject malicious scripts via improperly validated GET and POST parameters. This could lead to the execution of arbitrary JavaScript in the context of the user's browser, potentially compromising sensitive user data or session tokens.
