Lucene search

K
cvelistMitreCVELIST:CVE-2021-3333
HistoryFeb 05, 2021 - 1:01 p.m.

CVE-2021-3333

2021-02-0513:01:25
mitre
www.cve.org
5
opmantek open-audit
cross-site scripting
sql statements
debugging
logged in

EPSS

0.001

Percentile

33.8%

Opmantek Open-AudIT 4.0.1 is affected by cross-site scripting (XSS). When outputting SQL statements for debugging, a maliciously crafted query can trigger an XSS attack. This attack only succeeds if the user is already logged in to Open-AudIT before they click the malicious link.

EPSS

0.001

Percentile

33.8%

Related for CVELIST:CVE-2021-3333