Limited Black Friday Offer:
EPrints 3.4.2 - Cross Site Scripting (XSS) CVE-2021-26702 Scanner
Remote attacker can perform a reflected cross site scripting attack (XSS) by injecting malicious payload.
Short Info
Level
Medium
Type
Single Scan
Can be used by
Asset Owner
Estimated Time
10 sec
Scan only one
Url
Parent Category
EPrints 3.4.2 - Cross Site Scripting (XSS) CVE-2021-26702 Scanner Detail
EPrints 3.4.2 exposes a reflected XSS opportunity in the dataset parameter to the cgi/dataset_dictionary URI.