Files
CVEs-PoC/2021/CVE-2021-33904.md
2025-09-29 21:09:30 +02:00

917 B

CVE-2021-33904

Description

In Accela Civic Platform through 21.1, the security/hostSignon.do parameter servProvCode is vulnerable to XSS. NOTE: The vendor states "there are configurable security flags and we are unable to reproduce them with the available information.

POC

Reference

Github