Security Advisory

CVE-2021-40959

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2024-12-20 00:00:00
Last updated 2024-12-25 02:29:58
Assigner mitre
State PUBLISHED

Description

A reflected cross-site scripting vulnerability in MONITORAPP Application Insight Web Application Firewall (AIWAF) <= 4.1.6 and <=5.0 was identified on the subpage `/process_management/process_status.xhr.php`. This vulnerability allows an attacker to inject malicious scripts that execute in the context of the victims session.