CVE-2021-30171

CVE-2021-30171

Special characters of ERP POS news page are not filtered in users’ input, which allow remote authenticated attackers can inject malicious JavaScript and carry out stored XSS (Stored Cross-site scripting) attacks, additionally access and manipulate customer’s information.

Source: CVE-2021-30171

답글 남기기

이메일 주소는 공개되지 않습니다. 필수 필드는 *로 표시됩니다