CVE-2021-31858
EUVD-2021-1873320.07.2022, 13:15
DotNetNuke (DNN) 9.9.1 CMS is vulnerable to a Stored Cross-Site Scripting vulnerability in the user profile biography section which allows remote authenticated users to inject arbitrary code via a crafted payload.
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| dnnsoftware | dotnetnuke | 𝑥 ≤ 9.10.2 |
𝑥
= Vulnerable software versions