Lucene search

K
osvGoogleOSV:CVE-2021-40973
HistoryOct 01, 2021 - 4:15 p.m.

CVE-2021-40973

2021-10-0116:15:07
Google
osv.dev
3
cross-site scripting
spotweb software
remote attackers
web script injection

AI Score

5.8

Confidence

High

EPSS

0.001

Percentile

50.0%

Cross-site scripting (XSS) vulnerability in templates/installer/step-004.inc.php in spotweb 1.5.1 and below allow remote attackers to inject arbitrary web script or HTML via the lastname parameter.

AI Score

5.8

Confidence

High

EPSS

0.001

Percentile

50.0%