GHSA-8xrr-rcw2-6gvcMediumCVSS 5.4
OCS Inventory 2.9.1 is affected by Cross Site Scripting (XSS). To exploit the vulnerability, the...
🔗 CVE IDs covered (1)
📋 Description
OCS Inventory 2.9.1 is affected by Cross Site Scripting (XSS). To exploit the vulnerability, the attacker needs to manipulate the name of some device on your computer, such as a printer, replacing the device name with some malicious code that allows the execution of Stored Cross-site Scripting (XSS).
🔗 References (5)
- https://nvd.nist.gov/vuln/detail/CVE-2021-46355
- https://medium.com/@windsormoreira/ocs-inventory-2-9-1-cross-site-scripting-xss-cve-2021-46355-a88d72606b7e
- http://ocs.com
- https://medium.com/%40windsormoreira/ocs-inventory-2-9-1-cross-site-scripting-xss-cve-2021-46355-a88d72606b7e
- https://github.com/advisories/GHSA-8xrr-rcw2-6gvc