CVE Published: 10/03/2021 |
CVE Updated: 03/08/2024 |
CVE Year: 2021 Source: jpcert |
Vendor: WESEEK, Inc. |
Product: GROWI (v4.2 Series) Status : PUBLISHED
CVE-2021-20673 Description
Stored cross-site scripting vulnerability in Admin Page of GROWI (v4.2 Series) versions from v4.2.0 to v4.2.7 allows remote authenticated attackers to inject an arbitrary script via unspecified vectors.