CVE-2021-44566: XSS
Published Feb 22, 2022
·Updated
A Cross Site Scripting (XSS) vulnerability exists in RosarioSIS before 4.3 via the SanitizeMarkDown function in ProgramFunctions/MarkDownHTML.fnc.php.
Affected Software
1 affected component
RosarioSIS RosarioSIS<4.3
Remediation
Patch Available
Event History
Feb 22, 2022
CVE Published
via MITRE·08:02 PM
Data Sourced
via MITRE·08:02 PM
Description
Frequently Asked Questions
1
What is CVE-2021-44566?
CVE-2021-44566 is a Cross Site Scripting (XSS) vulnerability in RosarioSIS before version 4.3.
2
How does the XSS vulnerability in RosarioSIS occur?
The XSS vulnerability in RosarioSIS occurs through the SanitizeMarkDown function in ProgramFunctions/MarkDownHTML.fnc.php.
3
What is the severity of CVE-2021-44566?
The severity of CVE-2021-44566 is medium with a CVSS score of 5.4.
4
How can I fix the XSS vulnerability in RosarioSIS?
To fix the XSS vulnerability in RosarioSIS, update to version 4.3 or later.
5
Where can I find more information about CVE-2021-44566?
You can find more information about CVE-2021-44566 on the following references: [link1], [link2], [link3].