CVE-2021-46426: XSS
Published Mar 25, 2022
·Updated
phpIPAM 1.4.4 allows Reflected XSS and CSRF via app/admin/subnets/findfreesectionsubnets.php of the subnets functionality.
Affected Software
1 affected component
Phpipam Phpipam=1.4.4
Remediation
Event History
Mar 25, 2022
CVE Published
via MITRE·03:54 PM
Data Sourced
via MITRE·03:54 PM
Description
Frequently Asked Questions
1
What is the vulnerability ID of this phpIPAM vulnerability?
The vulnerability ID of this phpIPAM vulnerability is CVE-2021-46426.
2
What is the severity of CVE-2021-46426?
The severity of CVE-2021-46426 is medium.
3
What are the affected software versions for CVE-2021-46426?
The affected software version for CVE-2021-46426 is phpIPAM 1.4.4.
4
What is the CWE ID for CVE-2021-46426?
The CWE ID for CVE-2021-46426 is CWE-79 and CWE-352.
5
How can I fix the phpIPAM vulnerability (CVE-2021-46426)?
To fix the phpIPAM vulnerability (CVE-2021-46426), you should update to a version of phpIPAM that is not affected by the vulnerability.