Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2021-81950
HistoryOct 09, 2021 - 12:00 a.m.

Zammad Cross-Site Scripting Vulnerability (CNVD-2021-81950)

2021-10-0900:00:00
China National Vulnerability Database
www.cnvd.org.cn
4

0.001 Low

EPSS

Percentile

22.7%

Zammad is a Web-based open source help desk/customer support system. versions prior to Zammad 4.1.1 are vulnerable to a stored cross-site scripting vulnerability. An attacker could exploit the vulnerability to inject malicious JavaScript code via a custom avatar.

CPENameOperatorVersion
zammad zammadlt4.1.1

0.001 Low

EPSS

Percentile

22.7%

Related for CNVD-2021-81950