os909/iVANTI-CVE-2021-38560

os909/iVANTI-CVE-2021-38560

Releases0
Stars1

CVE History

CVEPublishedCVSS v3CVSS v2
6.1 MEDIUM4.3 MEDIUM

Ivanti Service Manager 2021.1 allows reflected XSS via the appName parameter associated with ConfigDB calls, such as in RelocateAttachments.aspx.