CVE-2021-45787

Severity CVSS v4.0:
Pending analysis
Type:
CWE-79 Cross-Site Scripting (XSS)
Publication date:
16/03/2022
Last modified:
22/03/2022

Description

There is a stored Cross Site Scripting (XSS) vulnerability in maccms v10 through adding videos. XSS code can be inserted at parameter positions including name and remarks.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:maccms:maccms:10.0:-:*:*:*:*:*:*
cpe:2.3:a:maccms:maccms:10.0:2018.03.15:*:*:*:*:*:*
cpe:2.3:a:maccms:maccms:10.0:2018.03.21:*:*:*:*:*:*
cpe:2.3:a:maccms:maccms:10.0:2018.04.02:*:*:*:*:*:*
cpe:2.3:a:maccms:maccms:10.0:2018.05.01:*:*:*:*:*:*
cpe:2.3:a:maccms:maccms:10.0:2018.05.02.1005:*:*:*:*:*:*
cpe:2.3:a:maccms:maccms:10.0:2018.05.03.0000:*:*:*:*:*:*
cpe:2.3:a:maccms:maccms:10.0:2018.05.04.1320:*:*:*:*:*:*
cpe:2.3:a:maccms:maccms:10.0:2018.05.07.1213:*:*:*:*:*:*
cpe:2.3:a:maccms:maccms:10.0:2018.05.08.2020:*:*:*:*:*:*
cpe:2.3:a:maccms:maccms:10.0:2018.05.09.1320:*:*:*:*:*:*
cpe:2.3:a:maccms:maccms:10.0:2018.05.11.2300:*:*:*:*:*:*
cpe:2.3:a:maccms:maccms:10.0:2018.05.15.1403:*:*:*:*:*:*
cpe:2.3:a:maccms:maccms:10.0:2018.05.17.1050:*:*:*:*:*:*
cpe:2.3:a:maccms:maccms:10.0:2018.05.22.1338:*:*:*:*:*:*


References to Advisories, Solutions, and Tools