ZeroHour

CVE-2021-41420

PoC
CVSS 3.1
5.4 medium
EPSS
<1%p53
Published
()
Modified
Description

A stored XSS vulnerability in MaianAffiliate v.1.0 allows an authenticated attacker for arbitrary JavaScript code execution in the context of authenticated and unauthenticated users through the MaianAffiliate admin panel.

Vendors
maianmedia
Products
maianaffiliate
Weakness
CWE-79
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N

In the news

No ingested article mentions this CVE yet.