First published: Fri Feb 24 2023(Updated: )
Cross Site Scripting Vulnerability in MiniCMS v.1.10 allows attacker to execute arbitrary code via a crafted get request.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
1234n Minicms | =1.10 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2021-33387 is a cross-site scripting (XSS) vulnerability in MiniCMS v.1.10 that allows an attacker to execute arbitrary code through a crafted GET request.
CVE-2021-33387 has a severity level of critical with a score of 9.6.
CVE-2021-33387 affects MiniCMS version 1.10, allowing an attacker to execute arbitrary code through a crafted GET request.
To fix CVE-2021-33387, it is recommended to update MiniCMS to a version that includes a patch for this vulnerability, or apply a security patch provided by the vendor.
You can find more information about CVE-2021-33387 on the GitHub page for MiniCMS: https://github.com/bg5sbk/MiniCMS/issues/40