Vulnerability Description
Cross Site Scripting Vulnerability in core-eMLi in AuroMeera Technometrix Pvt. Ltd. eMLi V1.0 allows an Attacker to send malicious code, generally in the form of a browser-side script, to a different end user via the page parameter to code/student_portal/home.php. The affected versions are eMLi School Management 1.0, eMLi College Campus Management 1.0, and eMLi University Management 1.0.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Auromeera | Emli | 1.0 |
Related Weaknesses (CWE)
References
- https://sudoat.blogspot.in/2017/04/xss-vulnerability-in-multiple-emli.htmlExploitThird Party Advisory
- https://sudoat.blogspot.in/2017/04/xss-vulnerability-in-multiple-emli.htmlExploitThird Party Advisory
FAQ
What is CVE-2017-7621?
CVE-2017-7621 is a vulnerability with a CVSS score of 6.1 (MEDIUM). Cross Site Scripting Vulnerability in core-eMLi in AuroMeera Technometrix Pvt. Ltd. eMLi V1.0 allows an Attacker to send malicious code, generally in the form of a browser-side script, to a different ...
How severe is CVE-2017-7621?
CVE-2017-7621 has been rated MEDIUM with a CVSS base score of 6.1/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2017-7621?
Check the references section above for vendor advisories and patch information. Affected products include: Auromeera Emli.