URL injection in Driva inSync 6.9.0 for MacOS, allows...
High severity
Unreviewed
Published
Jul 13, 2022
to the GitHub Advisory Database
•
Updated Jan 27, 2023
Description
Published by the National Vulnerability Database
Jul 12, 2022
Published to the GitHub Advisory Database
Jul 13, 2022
Last updated
Jan 27, 2023
URL injection in Driva inSync 6.9.0 for MacOS, allows attackers to force a visit to an arbitrary url via the port parameter to the Electron App.
References