CVE-2021-42867: XSS
Published Mar 31, 2022
·Updated
A Cross Site Scripting (XSS) vulnerability exists in DanPros htmly 2.8.1 via the Description field in (1) admin/config, and (2) index.php pages.
Affected Software
1 affected component
Htmly Htmly=2.8.1
Event History
Mar 31, 2022
CVE Published
via MITRE·05:53 PM
Data Sourced
via MITRE·05:53 PM
Description
Frequently Asked Questions
1
What is the vulnerability ID for this cross-site scripting vulnerability?
The vulnerability ID for this cross-site scripting vulnerability is CVE-2021-42867.
2
What is the severity of CVE-2021-42867?
The severity of CVE-2021-42867 is medium with a CVSS score of 4.8.
3
Which software version is affected by CVE-2021-42867?
Version 2.8.1 of DanPros htmly is affected by CVE-2021-42867.
4
How does the cross-site scripting vulnerability in DanPros htmly 2.8.1 occur?
The cross-site scripting vulnerability in DanPros htmly 2.8.1 occurs via the Description field in the admin/config and index.php pages.
5
Are there any references or additional information available for CVE-2021-42867?
Yes, you can find more information about CVE-2021-42867 at http://rlsec.xyz/vulns/CVE_2021_42867.html and https://rlsec.xyz/vulns/.