CVE-2021-21801: XSS
Published Jul 16, 2021
·Updated
This vulnerability is present in devicegraphpage.php script, which is a part of the Advantech R-SeeNet web applications. A specially crafted URL by an attacker and visited by a victim can lead to arbitrary JavaScript code execution.
Affected Software
1 affected component
Advantech R-SeeNet=2.4.12
Event History
Jul 16, 2021
CVE Published
via MITRE·10:37 AM
Data Sourced
via MITRE·10:37 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the vulnerability ID for this vulnerability?
The vulnerability ID for this vulnerability is CVE-2021-21801.
2
What is the affected software?
The affected software is Advantech R-SeeNet version 2.4.12.
3
What is the severity of CVE-2021-21801?
The severity of CVE-2021-21801 is critical with a severity value of 6.1.
4
What is the impact of this vulnerability?
This vulnerability can lead to arbitrary JavaScript code execution.
5
Is there a fix available for CVE-2021-21801?
To fix CVE-2021-21801, it is recommended to update to a patched version of Advantech R-SeeNet.