CVE-2021-20800: XSS
Published Oct 13, 2021
·Updated
Cross-site scripting vulnerability in the management screen of Cybozu Remote Service 3.1.8 allows a remote authenticated attacker to inject an arbitrary script via unspecified vectors.
Affected Software
1 affected component
Cybozu Remote Service Manager=3.1.8
Event History
Oct 13, 2021
CVE Published
via MITRE·08:30 AM
Data Sourced
via MITRE·08:30 AM
DescriptionWeakness
Frequently Asked Questions
1
What is the severity of CVE-2021-20800?
The severity of CVE-2021-20800 is medium, with a severity value of 5.4.
2
What is the affected software of CVE-2021-20800?
The affected software of CVE-2021-20800 is Cybozu Remote Service Manager 3.1.8.
3
How does CVE-2021-20800 affect the system?
CVE-2021-20800 allows a remote authenticated attacker to inject an arbitrary script via unspecified vectors.
4
How can I fix the Cross-site scripting vulnerability in Cybozu Remote Service 3.1.8?
To fix the Cross-site scripting vulnerability, update Cybozu Remote Service Manager to a version higher than 3.1.8.
5
Where can I find more information about CVE-2021-20800?
More information about CVE-2021-20800 can be found in the following references: [Link](https://jvn.jp/en/jp/JVN52694228/index.html) and [Link](https://kb.cybozu.support/article/37420).