CVE-2021-42083: Authenticated Stored XSS in OSNEXUS QuantaStor 6.0.0.335
An authenticated attacker is able to create alerts that trigger a stored XSS attack.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is CVE-2021-42083?
CVE-2021-42083 is a vulnerability that allows an authenticated attacker to create alerts that trigger a stored XSS attack.
How severe is CVE-2021-42083?
CVE-2021-42083 has a severity score of 5.4, which is classified as medium.
How does CVE-2021-42083 affect the software?
CVE-2021-42083 affects the software by enabling an authenticated attacker to create alerts that can trigger a stored XSS attack.
What is the CWE category of CVE-2021-42083?
The CWE category of CVE-2021-42083 is CWE-79, which refers to Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting').
Where can I find more information about CVE-2021-42083?
More information about CVE-2021-42083 can be found at the following references: [https://www.divd.nl/DIVD-2021-00020](https://www.divd.nl/DIVD-2021-00020), [https://csirt.divd.nl/CVE-2021-42083](https://csirt.divd.nl/CVE-2021-42083), [https://www.wbsec.nl/osnexus](https://www.wbsec.nl/osnexus).