Lucene search

K
cvelistMitreCVELIST:CVE-2021-40238
HistorySep 15, 2021 - 4:19 p.m.

CVE-2021-40238

2021-09-1516:19:57
mitre
www.cve.org

0.002 Low

EPSS

Percentile

54.3%

A Cross Site Scriptiong (XSS) vulnerability exists in the admin panel in Webuzo < 2.9.0 via an HTTP request to a non-existent page, which is activated by administrators viewing the β€œError Log” page. An attacker can leverage this to achieve Unauthenticated Remote Code Execution via the β€œCron Jobs” functionality of Webuzo.

0.002 Low

EPSS

Percentile

54.3%

Related for CVELIST:CVE-2021-40238