CVE-2021-20673

Publication date

2021-03-10 09:20:35

Family

jpcert

State

PUBLISHED

Description

Stored cross-site scripting vulnerability in Admin Page of GROWI (v4.2 Series) versions from v4.2.0 to v4.2.7 allows remote authenticated attackers to inject an arbitrary script via unspecified vectors.