CVE-2021-33904
07.06.2021, 12:15
In Accela Civic Platform through 21.1, the security/hostSignon.do parameter servProvCode is vulnerable to XSS. NOTE: The vendor states "there are configurable security flags and we are unable to reproduce them with the available information.
Vendor | Product | Version |
---|---|---|
accela | civic_platform | 𝑥 ≤ 21.1 |
𝑥
= Vulnerable software versions
References