OCS Inventory 2.9.1 is affected by Cross Site Scripting (XSS). To exploit the vulnerability, the attacker needs to manipulate the name of some device on your computer, such as a printer, replacing the device name with some malicious code that allows the execution of Stored Cross-site Scripting (XSS).
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published:

Updated: 2024-08-04T05:02:11.604Z

Reserved: 2022-01-18T00:00:00

Link: CVE-2021-46355

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2022-02-11T13:15:07.963

Modified: 2024-11-21T06:33:57.537

Link: CVE-2021-46355

cve-icon Redhat

Severity : Low

Publid Date: 2022-02-11T00:00:00Z

Links: CVE-2021-46355 - Bugzilla