Lucene search

K
prionPRIOn knowledge basePRION:CVE-2021-45888
HistoryMar 13, 2022 - 2:15 a.m.

Design/Logic Flaw

2022-03-1302:15:00
PRIOn knowledge base
www.prio-n.com
3

5.3 Medium

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

24.8%

An issue was discovered in PONTON X/P Messenger before 3.11.2. The navigation tree that is shown on the left side of every page of the web application is vulnerable to XSS: it allows injection of JavaScript into its nodes. Creating such nodes is only possible for users who have the role Configuration Administrator or Administrator.

5.3 Medium

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

24.8%

Related for PRION:CVE-2021-45888