Security Advisory

CVE-2020-21731

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2020-09-14 11:45:40
Last updated 2024-08-04 14:30:33
Assigner mitre
State PUBLISHED

Description

Gazie 7.29 is affected by: Cross Site Scripting (XSS) via http://192.168.100.7/gazie/modules/config/admin_utente.php?user_name=amministratore&Update. An attacker can inject JavaScript code, and the webapplication stores the injected code.