CVE-2021-27659: exacqVision Web Service CSS
exacqVision Web Service 21.03 does not sufficiently validate, filter, escape, and/or encode user-controllable input before it is placed in output that is used as a web page that is served to other users.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the vulnerability ID of this security issue?
The vulnerability ID is CVE-2021-27659.
What is the severity level of CVE-2021-27659?
The severity level of CVE-2021-27659 is medium with a CVSS score of 6.1.
What software is affected by CVE-2021-27659?
exacqVision Web Service version 21.03 is affected by CVE-2021-27659.
How can I fix CVE-2021-27659?
To fix CVE-2021-27659, it is recommended to update exacqVision Web Service to a version that sufficiently validates, filters, escapes, and encodes user-controllable input.
Where can I find more information about CVE-2021-27659?
More information about CVE-2021-27659 can be found in the following references: [Link 1](https://us-cert.cisa.gov/ics/advisories/icsa-21-180-01), [Link 2](https://us-cert.gov/ics/advisories), [Link 3](https://www.johnsoncontrols.com/cyber-solutions/security-advisories).