PT-2024-10913 · Mautic · Mautic

John Linhart

+3

·

Published

2024-09-18

·

Updated

2024-09-27

·

CVE-2021-27917

CVSS v3.1

7.3

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L
Name of the Vulnerable Software and Affected Versions Mautic versions prior to 4.4.13 Mautic versions prior to 5.1.1
Description A stored XSS issue existed in the contact tracking and page hits report, allowing for potential malicious script execution.
Recommendations For versions prior to 4.4.13, update to 4.4.13 or later. For versions prior to 5.1.1, update to 5.1.1 or later.

Fix

XSS

Weakness Enumeration

Related Identifiers

CVE-2021-27917
GHSA-XPC5-RR39-V8V2

Affected Products

Mautic