First published: Thu Mar 31 2022(Updated: )
A Cross Site Scripting (XSS) vulnerability exists in DanPros htmly 2.8.1 via the Description field in (1) admin/config, and (2) index.php pages.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Htmly | =2.8.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this cross-site scripting vulnerability is CVE-2021-42867.
The severity of CVE-2021-42867 is medium with a CVSS score of 4.8.
Version 2.8.1 of DanPros htmly is affected by CVE-2021-42867.
The cross-site scripting vulnerability in DanPros htmly 2.8.1 occurs via the Description field in the admin/config and index.php pages.
Yes, you can find more information about CVE-2021-42867 at http://rlsec.xyz/vulns/CVE_2021_42867.html and https://rlsec.xyz/vulns/.