Vulnerability Description
Cross-site Scripting (XSS) vulnerability in ArchivistaBox webclient allows an attacker to craft a malicious link, executing JavaScript in the context of a victim's browser. This issue affects all ArchivistaBox versions prior to 2022/I.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Archivista | Archivistabox | < 2022\/i |
Related Weaknesses (CWE)
References
- https://it-sec.de/schwachstelle-in-archivista-dms/ExploitThird Party Advisory
- https://it-sec.de/schwachstelle-in-archivista-dms/ExploitThird Party Advisory
FAQ
What is CVE-2021-42552?
CVE-2021-42552 is a vulnerability with a CVSS score of 6.1 (MEDIUM). Cross-site Scripting (XSS) vulnerability in ArchivistaBox webclient allows an attacker to craft a malicious link, executing JavaScript in the context of a victim's browser. This issue affects all Arch...
How severe is CVE-2021-42552?
CVE-2021-42552 has been rated MEDIUM with a CVSS base score of 6.1/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2021-42552?
Check the references section above for vendor advisories and patch information. Affected products include: Archivista Archivistabox.