Authenticated users with Site roles may inject XSS scripts via file names that will execute in the browser for this and other users of the same site.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: crafter
Published: 2021-12-02T15:40:56.227987Z
Updated: 2024-09-16T17:08:40.615Z
Reserved: 2021-01-08T00:00:00
Link: CVE-2021-23260
Vulnrichment
No data.
NVD
Status : Modified
Published: 2021-12-02T16:15:07.563
Modified: 2024-11-21T05:51:27.373
Link: CVE-2021-23260
Redhat
No data.