All public logs

Jump to navigation Jump to search

Combined display of all available logs of innovaphone wiki. You can narrow down the view by selecting a log type, the username (case-sensitive), or the affected page (also case-sensitive).

Logs
  • 11:19, 13 March 2024 Slu talk contribs created page Support:Innovaphone product behavior CVE-2024-28722 (Created page with "==Applies To== This information applies to * innovaphone Advanced UI prior 14r1sr1, 13r3sr3 and 12r2sr66 ==More Information== ===Problem Details=== XSL injection: The advanced UI servlets accept an "xsl" URL parameter that specifies the XSLT file for displaying the corresponding page. Prior to this fix, it was possible to specify a URL that contained a colon represented in XML entity encoding. CVE Details: [https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2024-28722...")