Authenticated users with Site roles may inject XSS scripts via file names that will execute in the browser for this and other users of the same site.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: crafter

Published: 2021-12-02T15:40:56.227987Z

Updated: 2024-09-16T17:08:40.615Z

Reserved: 2021-01-08T00:00:00

Link: CVE-2021-23260

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2021-12-02T16:15:07.563

Modified: 2021-12-03T14:01:55.243

Link: CVE-2021-23260

cve-icon Redhat

No data.