← Back

CVE-2021-46355

nvd nist
Published: Feb 11, 2022Modified: Nov 21, 2024

JSON object

Loading...
5.4
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N
Exploitability: 2.3 / Impact: 2.7
Source: NVD

Description

OCS Inventory 2.9.1 is affected by Cross Site Scripting (XSS). To exploit the vulnerability, the attacker needs to manipulate the name of some device on your computer, such as a printer, replacing the device name with some malicious code that allows the execution of Stored Cross-site Scripting (XSS).

Affected (1)

1 product
Ocs Inventory
Configuration A
1 vulnerable
Vulnerable SoftwareAffected Versions
Version 2.9.1

References (4)

Timeline

No history available yet.