Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2021-40959

Опубликовано: 20 дек. 2024
Источник: nvd
CVSS3: 6.1
EPSS Низкий

Описание

A reflected cross-site scripting vulnerability in MONITORAPP Application Insight Web Application Firewall (AIWAF) <= 4.1.6 and <=5.0 was identified on the subpage /process_management/process_status.xhr.php. This vulnerability allows an attacker to inject malicious scripts that execute in the context of the victim's session.

EPSS

Процентиль: 32%
0.00122
Низкий

6.1 Medium

CVSS3

Дефекты

CWE-79

Связанные уязвимости

CVSS3: 6.1
github
около 1 года назад

A reflected cross-site scripting vulnerability in MONITORAPP Application Insight Web Application Firewall (AIWAF) <= 4.1.6 and <=5.0 was identified on the subpage `/process_management/process_status.xhr.php`. This vulnerability allows an attacker to inject malicious scripts that execute in the context of the victim's session.

EPSS

Процентиль: 32%
0.00122
Низкий

6.1 Medium

CVSS3

Дефекты

CWE-79