CVE-2021-45822

A cross-site scripting vulnerability is present in Xbtit 3.1. The stored XSS vulnerability occurs because /ajaxchat/sendChatData.php does not properly validate the value of the "n" (POST) parameter. Through this vulnerability, an attacker is capable to execute malicious JavaScript code.
References
Advertisement

NeevaHost hosting service

Configurations

Configuration 1 (hide)

cpe:2.3:a:btiteam:xbtit:3.1:*:*:*:*:*:*:*

Information

Published : 2022-03-16 09:15

Updated : 2022-03-28 06:06


NVD link : CVE-2021-45822

Mitre link : CVE-2021-45822


JSON object : View

CWE
CWE-79

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')

Advertisement

dedicated server usa

Products Affected

btiteam

  • xbtit