Cross-site scripting vulnerability due to the inadequate tag sanitization in GROWI versions v4.2.19 and earlier allows remote attackers to execute an arbitrary script on the web browser of the user who accesses a specially crafted page.
Metrics
Affected Vendors & Products
References
History
No history.

Status: PUBLISHED
Assigner: jpcert
Published:
Updated: 2024-08-03T17:53:23.057Z
Reserved: 2020-12-17T00:00:00
Link: CVE-2021-20829

No data.

Status : Modified
Published: 2021-09-21T10:15:07.543
Modified: 2024-11-21T05:47:14.623
Link: CVE-2021-20829

No data.