Cross-site scripting vulnerability due to the inadequate tag sanitization in GROWI versions v4.2.19 and earlier allows remote attackers to execute an arbitrary script on the web browser of the user who accesses a specially crafted page.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: jpcert
Published: 2021-09-21T09:25:10
Updated: 2024-08-03T17:53:23.057Z
Reserved: 2020-12-17T00:00:00
Link: CVE-2021-20829
Vulnrichment
No data.
NVD
Status : Modified
Published: 2021-09-21T10:15:07.543
Modified: 2024-11-21T05:47:14.623
Link: CVE-2021-20829
Redhat
No data.