Reflected Cross-Site Scripting Vulnerability in ShoreTel Connect by ShoreTel
CVE-2019-9593
6.1MEDIUM
What is CVE-2019-9593?
A reflected Cross-Site Scripting (XSS) vulnerability exists in ShoreTel Connect ONSITE 18.82.2000.0, enabling remote attackers to exploit the system by injecting arbitrary HTML or web scripts through the 'page' parameter. This can lead to unauthorized access and manipulation of user content, posing significant risks to the integrity and confidentiality of web interactions.