Cross Site Scripting (XSS) vulnerability exists in index.html in AFI WebACMS through 2.1.0 via the the ID parameter.
References
Link | Resource |
---|---|
http://packetstormsecurity.com/files/165684/WebACMS-2.1.0-Cross-Site-Scripting.html | Exploit Third Party Advisory VDB Entry |
http://seclists.org/fulldisclosure/2022/Jan/41 | Exploit Mailing List Third Party Advisory |
https://blog.to.com/advisory-webacms-2-1-0-cross-site-scripting/ | Exploit Third Party Advisory |
https://www.afi-solutions.com/ | Vendor Advisory |
https://www.to.com | Not Applicable |
Configurations
History
No history.
Information
Published : 2022-01-20 17:15
Updated : 2022-02-10 07:43
NVD link : CVE-2021-44829
Mitre link : CVE-2021-44829
CVE.ORG link : CVE-2021-44829
JSON object : View
Products Affected
afi-solutions
- webacms
CWE
CWE-79
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')