Cross Site Scripting Vulnerability in Spotweb by Spotweb Developer
CVE-2021-33966
5.4MEDIUM
What is CVE-2021-33966?
A cross site scripting vulnerability exists in Spotweb version 1.4.9, allowing authenticated attackers to execute arbitrary code through a specially crafted GET request directed at the login page. This flaw can lead to unauthorized access and manipulation of data, posing a significant risk to user accounts and system integrity.
