Beveiligingsadvies

CVE-2021-37211

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2021-08-09 09:15:25
Laatst bijgewerkt 2024-09-16 22:30:28
Toegewezen door twcert
CVSS-score 5.4
Status PUBLISHED

Beschrijving

The bulletin function of Flygo does not filter special characters while a new announcement is added. Remoter attackers can use the vulnerability with general user’s credential to inject JavaScript and execute stored XSS attacks.