CVE-2021-4309

CVSS V2 None CVSS V3 None
Description
A vulnerability, which was classified as problematic, has been found in 01-Scripts 01ACP. This issue affects some unknown processing. The manipulation of the argument $_SERVER['SCRIPT_NAME'] leads to cross site scripting. The attack may be initiated remotely. The name of the patch is a16eb7da46ed22bc61067c212635394f2571d3c4. It is recommended to apply a patch to fix this issue. The identifier VDB-217649 was assigned to this vulnerability.
Overview
  • CVE ID
  • CVE-2021-4309
  • Assigner
  • cna@vuldb.com
  • Vulnerability Status
  • Analyzed
  • Published Version
  • 2023-01-08T17:15:17
  • Last Modified Date
  • 2023-01-12T22:25:20
CPE Configuration (Product)
CPE Vulnerable Operator Version Start Version End
cpe:2.3:a:01-scripts:01acp:*:*:*:*:*:*:*:* 1 OR 2021-09-15
History
Created Old Value New Value Data Type Notes
2023-01-08 17:21:54 Added to TrackCVE
2023-01-08 17:21:54 Weakness Enumeration new
2023-01-08 21:18:58 2023-01-08T20:44:05 CVE Modified Date updated
2023-01-08 21:18:58 Received Awaiting Analysis Vulnerability Status updated
2023-01-08 21:19:01 CVSS V3 information new
2023-01-08 21:19:01 CVSS V2 information new
2023-01-12 05:16:28 Awaiting Analysis Undergoing Analysis Vulnerability Status updated
2023-01-12 05:16:31 CVSS V3 information new
2023-01-12 05:16:31 CVSS V2 information new
2023-01-12 23:15:25 2023-01-12T22:25:20 CVE Modified Date updated
2023-01-12 23:15:25 Undergoing Analysis Analyzed Vulnerability Status updated
2023-01-12 23:15:26 CPE Information updated
2023-01-12 23:15:26 CVSS V3 information new
2023-01-12 23:15:26 CVSS V2 information new