Impact
Reflected cross-site scripting (XSS) vulnerabilities in the Tracks software enable execution of malicious JavaScript in the context of a user’s browser if that user clicks on a malicious link, possibly allowing retrieval or modification of the current user's data.
Patches
The problems have been patched in Tracks version 2.7.1.
Workarounds
There are no complete workarounds for the problems.
Reported by
Fixed by
- Jyri-Petteri Paloposki @ZeiP (Ardcoras oy)
Impact
Reflected cross-site scripting (XSS) vulnerabilities in the Tracks software enable execution of malicious JavaScript in the context of a user’s browser if that user clicks on a malicious link, possibly allowing retrieval or modification of the current user's data.
Patches
The problems have been patched in Tracks version 2.7.1.
Workarounds
There are no complete workarounds for the problems.
Reported by
Fixed by