Lucene search

K
prionPRIOn knowledge basePRION:CVE-2021-40238
HistorySep 15, 2021 - 5:15 p.m.

Cross site scripting

2021-09-1517:15:00
PRIOn knowledge base
www.prio-n.com
4

0.002 Low

EPSS

Percentile

54.3%

A Cross Site Scriptiong (XSS) vulnerability exists in the admin panel in Webuzo < 2.9.0 via an HTTP request to a non-existent page, which is activated by administrators viewing the β€œError Log” page. An attacker can leverage this to achieve Unauthenticated Remote Code Execution via the β€œCron Jobs” functionality of Webuzo.

CPENameOperatorVersion
webuzolt2.9.0

0.002 Low

EPSS

Percentile

54.3%

Related for PRION:CVE-2021-40238