Cross Site Scripting (XSS) vulnerability in Gurock TestRail before 7.1.2 allows remote authenticated attackers to run arbitrary code via the reference field in milestones or description fields in reports.
Metrics
Affected Vendors & Products
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2021-23140 | Cross Site Scripting (XSS) vulnerability in Gurock TestRail before 7.1.2 allows remote authenticated attackers to run arbitrary code via the reference field in milestones or description fields in reports. |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Wed, 26 Mar 2025 17:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2025-03-26T16:20:39.444Z
Reserved: 2021-07-12T00:00:00.000Z
Link: CVE-2021-36538
Updated: 2024-08-04T00:54:51.521Z
Status : Modified
Published: 2023-02-03T18:15:10.760
Modified: 2025-03-26T17:15:21.657
Link: CVE-2021-36538
No data.
OpenCVE Enrichment
No data.
EUVD