CVE-2021-32092: XSS
A Cross-site scripting (XSS) vulnerability in the DocumentAction component of U.S. National Security Agency (NSA) Emissary 5.9.0 allows remote attackers to inject arbitrary web script or HTML via the uuid parameter.
Affected Software
Event History
Frequently Asked Questions
What is the vulnerability ID of this issue?
The vulnerability ID of this issue is CVE-2021-32092.
What is the severity of CVE-2021-32092?
The severity of CVE-2021-32092 is medium with a CVSS score of 6.1.
How does CVE-2021-32092 affect the U.S. National Security Agency (NSA) Emissary?
CVE-2021-32092 is a Cross-site scripting (XSS) vulnerability that allows remote attackers to inject arbitrary web script or HTML via the uuid parameter in the DocumentAction component of U.S. National Security Agency (NSA) Emissary 5.9.0.
How can remote attackers exploit CVE-2021-32092?
Remote attackers can exploit CVE-2021-32092 by injecting arbitrary web script or HTML via the uuid parameter in the DocumentAction component of U.S. National Security Agency (NSA) Emissary 5.9.0.
Are there any known fixes for CVE-2021-32092?
At the moment, there are no known fixes for CVE-2021-32092. It is recommended to keep the software updated and follow any official vulnerability advisories or patches provided by the vendor.