Cross-site scripting vulnerability exists in Group Office prior to v6.6.182, prior to v6.7.64 and prior to v6.8.31, which may allow a remote authenticated attacker to execute an arbitrary script on the web browser of the user who is logging in to the product.
{
"versions": [
{
"introduced": "0"
},
{
"fixed": "6.6.182"
},
{
"introduced": "6.7.0"
},
{
"fixed": "6.7.64"
},
{
"introduced": "6.8.0"
},
{
"fixed": "6.8.31"
}
]
}