CVE-2021-45744
Description
A Stored Cross Site Scripting (XSS) vulnerability exists in bludit 3.13.1 via the TAGS section in login panel.
- CVSS Version 3.1
- CVSS Version 2.0
nvd
CVE ID: CVE-2021-45744
Base Score: 5.4
Base Severity: MEDIUM
Vector String:CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N
Impact Score: 2.7
Exploitability Score: 2.3
nvd
CVE ID: CVE-2021-45744
Base Score: 3.5
Base Severity: LOW
Vector String:AV:N/AC:M/Au:S/C:N/I:P/A:N
Proof Of Concept
plsanu
CVE-2021-45744 - A Stored Cross Site Scripting (XSS) vulnerability exists in bludit 3.13.1 via the TAGS section in login panel. Application stores attacker injected dangerous JavaScript in to the database and executes without validating.
Refrence: GitHub
plsanu
CVE-2021-45744 - A Stored Cross Site Scripting (XSS) vulnerability exists in bludit 3.13.1 via the TAGS section in login panel. Application stores attacker injected dangerous JavaScript in to the database and executes without validating.
Refrence: GitHub
Refrence: NVD