Описание
User with Orion Platform Admin Rights could store XSS through URL POST parameter in CreateExternalWebsite website.
User with Orion Platform Admin Rights could store XSS through URL POST parameter in CreateExternalWebsite website.
Ссылки
- https://nvd.nist.gov/vuln/detail/CVE-2021-35238
- https://documentation.solarwinds.com/en/success_center/orionplatform/content/core-secure-configuration.htm
- https://support.solarwinds.com/SuccessCenter/s/article/Orion-Platform-2020-2-6-Hotfix-1?language=en_US
- https://www.solarwinds.com/trust-center/security-advisories/cve-2021-35238
Связанные уязвимости
CVSS3: 4.8
nvd
больше 4 лет назад
User with Orion Platform Admin Rights could store XSS through URL POST parameter in CreateExternalWebsite website.