First published: Thu Oct 07 2021(Updated: )
Integria IMS in its 5.0.92 version does not filter correctly some fields related to the login.php file. An attacker could exploit this vulnerability in order to perform a cross-site scripting attack (XSS).
Credit: cve-coordination@incibe.es cve-coordination@incibe.es
Affected Software | Affected Version | How to fix |
---|---|---|
Artica Integria IMS | =5.0.92 |
This vulnerability has been solved in Integria IMS 5.0 93.
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this Integria IMS vulnerability is CVE-2021-3834.
The severity of CVE-2021-3834 is medium with a CVSS score of 6.1.
The affected software version is Integria IMS 5.0.92.
The impact of CVE-2021-3834 is that it allows an attacker to perform a cross-site scripting (XSS) attack.
Yes, you can find references for CVE-2021-3834 at the following URLs: [reference1](https://integriaims.com/en/services/updates/), [reference2](https://www.incibe-cert.es/en/early-warning/security-advisories/integria-ims-vulnerable-cross-site-scripting-xss)