e-Excellence Inc. U-Office Force - Stored XSS
CVE-2022-39027
5.4MEDIUM
What is CVE-2022-39027?
U-Office Force Forum function has insufficient filtering for special characters. A remote attacker with general user privilege can inject JavaScript and perform XSS (Stored Cross-Site Scripting) attack.
Affected Version(s)
U-Office Force <= 20.50.7821D Build:202104sp1
