nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2021-3010 CVE-2021-3010
MEDIUM
OpenText Content Server 20.3 - 'multiple' Stored Cross-Site Scripting
Record summary
CVE-2021-3010 has a selected CVSS score of 5.4 (medium); EIP currently links 1 catalogued exploit.
Description
There are multiple persistent cross-site scripting (XSS) vulnerabilities in the web interface of OpenText Content Server Version 20.3. The application allows a remote attacker to introduce arbitrary JavaScript by crafting malicious form values that are later not sanitized.
Description source: CVE List
Exploitation context
Available material
- Catalogued exploits
- 1
Proofs of concept
1Catalogued exploits
ExploitDBOpenText Content Server 20.3 - 'multiple' Stored Cross-Site ScriptingExploitDB exploitby Kamil BreńskiNot analyzed1 file
References
3exploit-db.com
https://www.exploit-db.com/exploits/49578 opentext.com
https://www.opentext.com/products-and-solutions/products/enterprise-content-management/content-management