ResourceSpace before 9.6 rev 18290 is affected by a reflected Cross-Site Scripting vulnerability in plugins/wordpress_sso/pages/index.php via the wordpress_user parameter. If an attacker is able to persuade a victim to visit a crafted URL, malicious JavaScript content may be executed within the context of the victim's browser.
Metrics
Affected Vendors & Products
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
No history.
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-04T03:22:25.759Z
Reserved: 2021-10-04T00:00:00
Link: CVE-2021-41951
No data.
Status : Modified
Published: 2021-11-15T16:15:10.323
Modified: 2024-11-21T06:26:59.733
Link: CVE-2021-41951
No data.
OpenCVE Enrichment
No data.
Weaknesses