CVE-2021-36572

MEDIUM6.1EPSS 0.31%

FeehiCMS Cross Site Scripting vulnerability

Published: 12/15/2022Modified: 11/8/2023
Also known as:GHSA-m54v-gv8p-9pqp

Description

Cross Site Scripting (XSS) vulnerability in Feehi CMS thru 2.1.1 allows attackers to run arbitrary code via the user name field of the login page.

Affected packages (1)

CVSS scores

SourceVersionSeverityVector
osvCVSS 3.1MEDIUM6.1CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N

References (3)