Persistent Cross-Site Scripting Vulnerabilities in OpenText Content Server
CVE-2021-3010
5.4MEDIUM
Summary
OpenText Content Server Version 20.3 is susceptible to multiple persistent cross-site scripting (XSS) vulnerabilities within its web interface. These vulnerabilities allow remote attackers to inject arbitrary JavaScript into the application by using malicious form values, which are not adequately sanitized upon submission. This could lead to potential exploitation, affecting the integrity and confidentiality of user data.
References
CVSS V3.1
Score:
5.4
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
Low
Availability:
Low
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
Required
Scope:
Changed
Timeline
Vulnerability published
Vulnerability Reserved