Security Advisory

CVE-2021-20128

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2021-10-13 15:49:30
Last updated 2024-08-03 17:30:07
Assigner tenable
State PUBLISHED

Description

The Profile Name field in the floor plan (Network Menu) page in Draytek VigorConnect 1.6.0-B3 was found to be vulnerable to stored XSS, as user input is not properly sanitized.