Lucene search

K
osvGoogleOSV:CVE-2021-33966
HistoryJan 21, 2022 - 7:15 p.m.

CVE-2021-33966

2022-01-2119:15:09
Google
osv.dev
7
cve-2021-33966
spotweb
authenticated attack
arbitrary code execution
get request
login page
software

AI Score

6.2

Confidence

High

EPSS

0.001

Percentile

17.9%

Cross site scripting (XSS) vulnerability in spotweb 1.4.9, allows authenticated attackers to execute arbitrary code via crafted GET request to the login page.

AI Score

6.2

Confidence

High

EPSS

0.001

Percentile

17.9%