minor update to description

patch-1
sandeep 2021-12-04 12:44:08 +05:30
parent 09468dc0f8
commit d2d0d4bf8d
1 changed files with 1 additions and 1 deletions

View File

@ -4,6 +4,7 @@ info:
name: Clansphere CMS 2011.4 - Reflected Cross-Site Scripting (XSS) name: Clansphere CMS 2011.4 - Reflected Cross-Site Scripting (XSS)
author: alph4byt3 author: alph4byt3
severity: medium severity: medium
description: Clansphere CMS 2011.4 allows unauthenticated reflected XSS via "language" parameter.
reference: reference:
- https://github.com/xoffense/POC/blob/main/Clansphere%202011.4%20%22language%22%20xss.md - https://github.com/xoffense/POC/blob/main/Clansphere%202011.4%20%22language%22%20xss.md
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-27310 - https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-27310
@ -13,7 +14,6 @@ info:
cvss-score: 6.10 cvss-score: 6.10
cve-id: CVE-2021-27310 cve-id: CVE-2021-27310
cwe-id: CWE-79 cwe-id: CWE-79
description: "Clansphere CMS 2011.4 allows unauthenticated reflected XSS via \"language\" parameter."
requests: requests:
- method: GET - method: GET