Security Advisory

CVE-2021-39486

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2021-10-04 13:45:26
Last updated 2024-08-04 02:06:42
Assigner mitre
State PUBLISHED

Description

A Stored XSS via Malicious File Upload exists in Gila CMS version 2.2.0. An attacker can use this to steal cookies, passwords or to run arbitrary code on a victims browser.