Description
An XSS issue was discovered in COINS Construction Cloud 11.12. Due to insufficient neutralization of user input in the description of a task, it is possible to store malicious JavaScript code in the task description. This is later executed when it is reflected back to the user.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2021-32010 | An XSS issue was discovered in COINS Construction Cloud 11.12. Due to insufficient neutralization of user input in the description of a task, it is possible to store malicious JavaScript code in the task description. This is later executed when it is reflected back to the user. |
References
History
No history.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-04T04:39:20.265Z
Reserved: 2021-12-16T00:00:00.000Z
Link: CVE-2021-45228
No data.
Status : Modified
Published: 2022-04-14T15:15:07.677
Modified: 2024-11-21T06:32:00.763
Link: CVE-2021-45228
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD