First published: Thu Sep 16 2021(Updated: )
OpenSIS Community Edition version <= 7.6 is affected by a reflected XSS vulnerability in EmailCheck.php via the "opt" parameter.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
OS4ED openSIS-Classic | <=7.6 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID is CVE-2021-27340.
The severity of CVE-2021-27340 is medium.
The affected software version of CVE-2021-27340 is OpenSIS Community Edition version <= 7.6.
The CWE ID of CVE-2021-27340 is 79.
To fix CVE-2021-27340, update to a version of OpenSIS Community Edition above 7.6.