Beveiligingsadvies

CVE-2021-30172

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2021-05-07 09:30:25
Laatst bijgewerkt 2024-09-17 00:51:32
Toegewezen door twcert
CVSS-score 4.6
Status PUBLISHED

Beschrijving

Special characters of picture preview page in the Quan-Fang-Wei-Tong-Xun system are not filtered in users’ input, which allow remote authenticated attackers can inject malicious JavaScript and carry out Reflected XSS (Cross-site scripting) attacks, additionally access and manipulate customer’s information.