CyberRota Analysis
AI analysis pending.
CVE
CVE-2021-42329
Severity
MEDIUM
CVSS
5.4
EPSS
0.57%
Java
Original NVD Description
The “List_Add” function of message board of ShinHer StudyOnline System does not filter special characters in the title parameter. After logging in with user’s privilege, remote attackers can inject JavaScript and execute stored XSS attacks.