ZeroHour

CVE-2021-44310

PoC
CVSS 3.1
4.8 medium
EPSS
<1%p46
Published
()
Modified
Description

An issue was discovered in Firmware Analysis and Comparison Tool v3.2. With administrator privileges, the attacker could perform stored XSS attacks by inserting JavaScript and HTML code in user creation functionality.

Vendors
firmware analysis and comparison tool project
Products
firmware analysis and comparison tool
Weakness
CWE-79
Vector
CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:N

In the news

No ingested article mentions this CVE yet.