Логотип exploitDog
bind:CVE-2021-33561
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2021-33561

Количество 2

Количество 2

nvd логотип

CVE-2021-33561

больше 4 лет назад

A stored cross-site scripting (XSS) vulnerability in Shopizer before 2.17.0 allows remote attackers to inject arbitrary web script or HTML via customer_name in various forms of store administration. It is saved in the database. The code is executed for any user of store administration when information is fetched from the backend, e.g., in admin/customers/list.html.

CVSS3: 4.8
EPSS: Низкий
github логотип

GHSA-rcp4-jm2v-mr3f

больше 4 лет назад

Cross-site scripting in Shopizer

CVSS3: 4.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2021-33561

A stored cross-site scripting (XSS) vulnerability in Shopizer before 2.17.0 allows remote attackers to inject arbitrary web script or HTML via customer_name in various forms of store administration. It is saved in the database. The code is executed for any user of store administration when information is fetched from the backend, e.g., in admin/customers/list.html.

CVSS3: 4.8
1%
Низкий
больше 4 лет назад
github логотип
GHSA-rcp4-jm2v-mr3f

Cross-site scripting in Shopizer

CVSS3: 4.8
1%
Низкий
больше 4 лет назад

Уязвимостей на страницу