Latest Vulnerabilities and Exploits



CVE ID:

CVE-2021-3333

Details:

Opmantek Open-AudIT 4.0.1 is affected by cross-site scripting (XSS). When outputting SQL statements for debugging, a maliciously crafted query can trigger an XSS attack. This attack only succeeds if the user is already logged in to Open-AudIT before they click the malicious link.

References:

:https://community.opmantek.com/display/OA/Errata+-+4.0.1+XSS+in+SQL+debugging+output

ZeroDayLab Assigned Tags:

CROSS SITE SCRIPTING - What is Cross Site Scripting?