CVE-2021-3862: Cross-site Scripting (XSS) - Reflected in icecoder/icecoder
Published Jan 17, 2022
·Updated
icecoder is vulnerable to Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
Affected Software
1 affected component
icecoder ICEcoder<8.1
Remediation
Event History
Jan 17, 2022
CVE Published
via MITRE·01:50 PM
Data Sourced
via MITRE·01:50 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is CVE-2021-3862?
CVE-2021-3862 is a vulnerability in icecoder that allows for 'Cross-site Scripting' attacks.
2
How severe is CVE-2021-3862?
CVE-2021-3862 has a severity rating of 4.8 (medium).
3
What software versions are affected by CVE-2021-3862?
Versions of icecoder up to exclusive 8.1 are affected by CVE-2021-3862.
4
How can CVE-2021-3862 be fixed?
CVE-2021-3862 can be fixed by updating icecoder to a version beyond 8.1.
5
What is the Common Weakness Enumeration (CWE) associated with CVE-2021-3862?
The CWE associated with CVE-2021-3862 is CWE-79 (Improper Neutralization of Input During Web Page Generation).