← Back

CVE-2021-21515

nvd nist
Published: Mar 1, 2021Modified: Nov 21, 2024

JSON object

Loading...
5.4
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N
Exploitability: 2.3 / Impact: 2.7
Source: NVD

Description

Dell EMC SourceOne, versions 7.2SP10 and prior, contain a Stored Cross-Site Scripting vulnerability. A remote low privileged attacker may potentially exploit this vulnerability, to hijack user sessions or to trick a victim application user to unknowingly send arbitrary requests to the server.

Affected (11)

Products: Dell: Emc Sourceone
1 product
Emc Sourceone
Configuration A
11 vulnerable
Vulnerable SoftwareAffected Versions
Dell
Before 7.2
Version 7.2
Version 7.2 sp1
Version 7.2 sp2
Version 7.2 sp3
Version 7.2 sp4
Version 7.2 sp5
Version 7.2 sp6
Version 7.2 sp7
Version 7.2 sp8
Version 7.2 sp9

Timeline

No history available yet.