Users login

Create an account »


Users login

Home » CVE Vulnerabilities » CVE-2017-5620

CVE-2017-5620 An XSS issue was discovered in

  • CVE ID: CVE-2017-5620
  • Vendors: Zammad
  • Date: March 13, 2017
  • Severity: Medium
  • Impact score: 2.90
  • Exploit score: 8.60

An XSS issue was discovered in Zammad before 1.0.4, 1.1.x before 1.1.3, and 1.2.x before 1.2.1. Attachments are opened in a new tab instead of getting downloaded. This creates an attack vector of executing code in the domain of the application.

Newsletter signup

Signup to our monthly newsletter and stay in touch with IT news!

Free E-books

We've got ebooks! But they're not online. :( Please give us a few days to bring downloads back.


Have something to say or just wanna drop us a line? Please keep this in mind: to spam, we reply with spam.

Contact us »