Cross Site Scripting (XSS) vulnerability exists in UEditor v1.4.3.3, which can be exploited by an attacker to obtain user cookie information.
References
Link Resource
https://www.cnvd.org.cn/flaw/show/3243916 Third Party Advisory
https://www.freebuf.com/vuls/269956.html Exploit Third Party Advisory
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: mitre

Published: 2021-09-28T18:09:07

Updated: 2021-09-28T18:09:07

Reserved: 2021-07-21T00:00:00


Link: CVE-2021-37271

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2021-09-28T19:15:07.113

Modified: 2021-10-01T13:59:06.613


Link: CVE-2021-37271

JSON object: View

cve-icon Redhat Information

No data.

CWE