mirror of
https://github.com/0xMarcio/cve.git
synced 2026-05-11 00:14:52 +02:00
860 B
860 B
CVE-2021-25977
Description
In PiranhaCMS, versions 7.0.0 to 9.1.1 are vulnerable to stored XSS due to the page title improperly sanitized. By creating a page with a specially crafted page title, a low privileged user can trigger arbitrary JavaScript execution.
POC
Reference
- https://www.whitesourcesoftware.com/vulnerability-database/CVE-2021-25977
- https://www.whitesourcesoftware.com/vulnerability-database/CVE-2021-25977
Github
No PoCs found on GitHub currently.