CVE-2021-31830

CVE-2021-31830

Improper Neutralization of Input During Web Page Generation (‘Cross-site Scripting’) vulnerability in McAfee Database Security (DBSec) prior to 4.8.2 allows an administrator to embed JavaScript code when configuring the name of a database to be monitored. This would be triggered when any authorized user logs into the DBSec interface and opens the properties configuration page for this database.

Source: CVE-2021-31830

답글 남기기

이메일 주소는 공개되지 않습니다. 필수 필드는 *로 표시됩니다