Vulnerability Description
Cross-Site Scripting (XSS) vulnerability exists in Csdn APP 4.10.0, which can be exploited by attackers to obtain sensitive information such as user cookies.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Csdn | Csdn App | 4.10.0 |
Related Weaknesses (CWE)
References
- https://github.com/purple-WL/Security-vulnerability/blob/main/Csdn%20APP%204.10.Third Party Advisory
- https://www.cnvd.org.cn/flaw/show/CNVD-2021-52394Third Party Advisory
- https://github.com/purple-WL/Security-vulnerability/blob/main/Csdn%20APP%204.10.Third Party Advisory
- https://www.cnvd.org.cn/flaw/show/CNVD-2021-52394Third Party Advisory
FAQ
What is CVE-2021-41747?
CVE-2021-41747 is a vulnerability with a CVSS score of 6.1 (MEDIUM). Cross-Site Scripting (XSS) vulnerability exists in Csdn APP 4.10.0, which can be exploited by attackers to obtain sensitive information such as user cookies.
How severe is CVE-2021-41747?
CVE-2021-41747 has been rated MEDIUM with a CVSS base score of 6.1/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2021-41747?
Check the references section above for vendor advisories and patch information. Affected products include: Csdn Csdn App.