Description
Cross Site Scripting (XSS) vulnerability in Gurock TestRail before 7.1.2 allows remote authenticated attackers to run arbitrary code via the reference field in milestones or description fields in reports.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2021-23140 | Cross Site Scripting (XSS) vulnerability in Gurock TestRail before 7.1.2 allows remote authenticated attackers to run arbitrary code via the reference field in milestones or description fields in reports. |
References
History
Wed, 26 Mar 2025 17:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2025-03-26T16:20:39.444Z
Reserved: 2021-07-12T00:00:00.000Z
Link: CVE-2021-36538
Updated: 2024-08-04T00:54:51.521Z
Status : Modified
Published: 2023-02-03T18:15:10.760
Modified: 2025-03-26T17:15:21.657
Link: CVE-2021-36538
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD