PT-2021-20141 · Unknown · Covid19 Testing Management System

Published

2021-05-26

·

Updated

2023-11-14

·

CVE-2021-33469

CVSS v3.1

4.8

Medium

VectorAV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:N
Name of the Vulnerable Software and Affected Versions COVID19 Testing Management System version 1.0
Description The issue concerns a Cross Site Scripting (XSS) vulnerability. It can be exploited via the Admin name parameter.
Recommendations For COVID19 Testing Management System version 1.0, consider restricting the use of the Admin name parameter until a patch is available. As a temporary workaround, validate and sanitize all input for the Admin name parameter to prevent malicious script injection. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

XSS

Weakness Enumeration

Related Identifiers

CVE-2021-33469

Affected Products

Covid19 Testing Management System