CVE-2021-42558: XSS
Published Jan 12, 2022
·Updated
An issue was discovered in CALDERA 2.8.1. It contains multiple reflected, stored, and self XSS vulnerabilities that may be exploited by authenticated and unauthenticated attackers.
Affected Software
1 affected component
MITRE CALDERA<=2.8.1
Event History
Jan 12, 2022
CVE Published
via MITRE·07:06 PM
Data Sourced
via MITRE·07:06 PM
Description
Frequently Asked Questions
1
What is CVE-2021-42558?
CVE-2021-42558 is a vulnerability discovered in CALDERA 2.8.1 that allows for multiple reflected, stored, and self XSS attacks.
2
How severe is CVE-2021-42558?
CVE-2021-42558 has a severity level of medium, with a CVSS score of 6.1.
3
Who is affected by CVE-2021-42558?
Users of CALDERA 2.8.1 are affected by CVE-2021-42558.
4
Are authenticated attackers able to exploit CVE-2021-42558?
Both authenticated and unauthenticated attackers can exploit CVE-2021-42558.
5
How can I fix CVE-2021-42558?
To fix CVE-2021-42558, update to a version of CALDERA that is not affected by the vulnerability.