CVE-2021-31858
20.07.2022, 13:15
DotNetNuke (DNN) 9.9.1 CMS is vulnerable to a Stored Cross-Site Scripting vulnerability in the user profile biography section which allows remote authenticated users to inject arbitrary code via a crafted payload.
Vendor | Product | Version |
---|---|---|
dnnsoftware | dotnetnuke | 𝑥 ≤ 9.10.2 |
𝑥
= Vulnerable software versions