ZeroHour

CVE-2021-40093

CVSS 3.1
5.4 medium
EPSS
<1%p46
Published
()
Modified
Description

A cross-site scripting (XSS) vulnerability in integration configuration in SquaredUp for SCOM 5.2.1.6654 allows remote attackers to inject arbitrary web script or HTML via dashboard actions.

Vendors
squaredup
Products
squaredup
Weakness
CWE-79
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N

In the news

No ingested article mentions this CVE yet.