Beveiligingsadvies

CVE-2021-45843

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2021-12-27 11:18:31
Laatst bijgewerkt 2024-08-04 04:54:30
Toegewezen door mitre
CVSS-score geen score
Status PUBLISHED

Beschrijving

glFusion CMS v1.7.9 is affected by a reflected Cross Site Scripting (XSS) vulnerability. The value of the title request parameter is copied into the value of an HTML tag attribute which is encapsulated in double quotation marks. This input was echoed unmodified in the application's response.