PT-2026-3810 · Genexis · Platinum-4410

Jithin Ks

·

Published

2026-01-21

·

Updated

2026-01-21

·

CVE-2021-47858

CVSS v3.1

7.2

High

VectorAV:N/AC:L/PR:N/UI:N/S:C/C:L/I:L/A:N
Name of the Vulnerable Software and Affected Versions Genexis Platinum-4410 version P4410-V2-1.31A
Description A stored cross-site scripting issue exists in the Security Management interface. Attackers can inject malicious scripts through the start addr parameter in the start source address field. These scripts persist and execute when privileged users access the security management page.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

XSS

Weakness Enumeration

Related Identifiers

CVE-2021-47858

Affected Products

Platinum-4410