Zendesk Chat < 1.2.6 - Cross-Site Scripting
mediumCross-site scripting (XSS) vulnerability in ZeroClipboard.swf and ZeroClipboard10.swf in ZeroClipboard before 1.0.8, as used in em-shorty, RepRapCalculator, Fulcrum, Django, aCMS, and other products, allows remote attackers to inject arbitrary web script or HTML via the id parameter. NOTE: this is might be the same vu...
- CVSS:
- 6.1
- Affected:
- up to 1.2.6
- Fixed in:
- 1.2.6
- Disclosed:
- Feb 18, 2013