CVE-2021-22503Cross-site Scripting in Edirectory

Severity
6.1MEDIUMNVD
CNA5.4
EPSS
0.2%
top 57.09%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedSep 12

Description

Possible Improper Neutralization of Input During Web Page Generation Vulnerability in eDirectory has been discovered in OpenText™ eDirectory 9.2.3.0000.

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:NExploitability: 2.8 | Impact: 2.7

Affected Packages2 packages

CVEListV5opentext/edirectory9.2.3.0000<
NVDmicrofocus/edirectory< 9.2.3.0000

🔴Vulnerability Details

2
CVEList
Improper Neutralization of Input During Web Page Generation Vulnerability2024-09-12
GHSA
GHSA-5jrh-c32g-j2q9: Possible Improper Neutralization of Input During Web Page Generation Vulnerability in eDirectory has been discovered in OpenText™ eDirectory 92024-09-12
CVE-2021-22503 — Cross-site Scripting in Edirectory | cvebase