Cross-site Scripting (XSS) vulnerability in the main dashboard of Ellipse APM versions allows an authenticated user or integrated application to inject malicious data into the application that can then be executed in a victim’s browser. This issue affects: Hitachi ABB Power Grids Ellipse APM 5.3 version 5.3.0.1 and prior versions; 5.2 version 5.2.0.3 and prior versions; 5.1 version 5.1.0.6 and prior versions.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2021-06-14T21:23:53.175873Z
Updated: 2024-09-17T01:20:50.991Z
Reserved: 2021-03-01T00:00:00
Link: CVE-2021-27887
Vulnrichment
No data.
NVD
Status : Modified
Published: 2021-06-14T22:15:15.797
Modified: 2024-11-21T05:58:42.163
Link: CVE-2021-27887
Redhat
No data.