CVE-2021-32616
1CDN is open-source file sharing software. In 1CDN before commit f88a2730fa50fc2c2aeab09011f6f142fd90ec25, there is a basic cross-site scripting vulnerability that allows an attacker to inject /<script>//code</script> and execute JavaScript code on the client side.
Published:May 28, 2021
Last Modified:Nov 21, 2024
EPS:May 28, 2021
EPSS Score:0.00311
CVSS Score:8.1
Affected Products
Vendor
Product
Action
Vendor
1cdn Project
Product
1cdn
1cdn Project
1cdn
Exploits
No exploit reference
Common Weakness Enumeration
Common Attack Pattern Enumeration and Classification (CAPEC)
References
Common Vulnerability Scoring System
Attack Vector
Network
Adjacent
Local
Physical
Privileges Required
None
Low
High
User Interaction
None
Required
Scope
Unchanged
Changed
Confidentiality
None
Low
High
Integrity
None
Low
High
Availability
None
Low
High
