CVE-2020-21101
29.04.2021, 17:15
Cross Site Scriptiong vulnerabilityin Screenly screenly-ose all versions, including v1.8.2 (2019-09-25-Screenly-OSE-lite.img), in the 'Add Asset' page via manipulation of a 'URL' field, which could let a remote malicious user execute arbitrary code.
Vendor | Product | Version |
---|---|---|
screenly | screenly | 0.9 |
screenly | screenly | 0.9.1 |
screenly | screenly | 0.10 |
screenly | screenly | 0.11 |
screenly | screenly | 0.12 |
screenly | screenly | 0.12.1 |
screenly | screenly | 0.13 |
screenly | screenly | 0.14 |
screenly | screenly | 0.15 |
screenly | screenly | 0.15.1 |
screenly | screenly | 0.16 |
screenly | screenly | 0.17 |
screenly | screenly | 0.18 |
screenly | screenly | 0.18.1 |
screenly | screenly | 0.18.2 |
𝑥
= Vulnerable software versions