← Back

CVE-2021-4035

nvd nist
Published: Feb 11, 2022Modified: Jun 17, 2026

JSON object

Loading...
4.8
Vector
CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:N
Exploitability: 1.7 / Impact: 2.7
Source: NVD

Description

A stored cross site scripting have been identified at the comments in the report creation due to an obsolote version of tinymce editor. In order to exploit this vulnerability, the attackers needs an account with enough privileges to view and edit reports.

Affected (1)

Wocu Monitoring
Configuration A
1 vulnerable
Vulnerable SoftwareAffected Versions
From 0.27 to 48.2

Timeline

No history available yet.