← back
CVE-2021-3834

Integria IMS vulnerable to Cross Site Scripting (XSS)

CVSS 5.4 MEDIUMEPSS 0.6%CWE-79
Vexday Risk Score
13Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS 5.4EPSS 0.6%KEV nãoPoC Nuclei Metasploit Patch
Lifecycle
07 Oct 2021Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
Integria IMS in its 5.0.92 version does not filter correctly some fields related to the login.php file. An attacker could exploit this vulnerability in order to perform a cross-site scripting attack (XSS).
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:N
Affected products
Ártica · Integria IMS

Want to know if your infrastructure is exposed to this?

Talk to TrueHacking →