Cross Site Scripting (XSS) in Ari Adminer v1 allows remote attackers to execute arbitrary code via the 'Title' parameter of the 'Add New Connections' component when the 'save()' function is called.
References
Link | Resource |
---|---|
https://www.seebug.org/vuldb/ssvid-97852 | Exploit Third Party Advisory |
Configurations
Information
Published : 2021-09-15 07:15
Updated : 2021-09-22 13:58
NVD link : CVE-2020-19156
Mitre link : CVE-2020-19156
JSON object : View
CWE
CWE-79
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
Products Affected
ari-soft
- ari_adminer