1 results (0.005 seconds)

CVSS: 6.1EPSS: 0%CPEs: 1EXPL: 3

28 Sep 2021 — In Progress WhatsUp Gold prior to version 21.1.0, an application endpoint failed to adequately sanitize malicious input. which could allow an unauthenticated attacker to execute arbitrary code in a victim's browser. En Progress WhatsUp Gold versiones anteriores a 21.1.0, un endpoint de la aplicación no saneaba adecuadamente una entrada maliciosa, lo que podía permitir a un atacante no autenticado ejecutar código arbitrario en el navegador de la víctima WhatsUpGold version 21.0.3 suffers from a persistent cr... • https://packetstorm.news/files/id/164359 • CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') •