CVE-2021-22499

Persistent Cross-Site scripting vulnerability in Micro Focus Application Performance Management product, affecting versions 9.40, 9.50 and 9.51. The vulnerability could allow persistent XSS attack.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:microfocus:application_performance_management:9.40:*:*:*:*:*:*:*
cpe:2.3:a:microfocus:application_performance_management:9.50:*:*:*:*:*:*:*
cpe:2.3:a:microfocus:application_performance_management:9.51:*:*:*:*:*:*:*

History

07 Nov 2023, 03:30

Type Values Removed Values Added
References (CONFIRM) https://softwaresupport.softwaregrp.com/doc/KM03775253 - Vendor Advisory () https://softwaresupport.softwaregrp.com/doc/KM03775253 -

08 Feb 2021, 21:05

Type Values Removed Values Added
References (CONFIRM) https://softwaresupport.softwaregrp.com/doc/KM03775253 - (CONFIRM) https://softwaresupport.softwaregrp.com/doc/KM03775253 - Vendor Advisory
CVSS v2 : unknown
v3 : unknown
v2 : 3.5
v3 : 4.8
CWE CWE-79
CPE cpe:2.3:a:microfocus:application_performance_management:9.51:*:*:*:*:*:*:*
cpe:2.3:a:microfocus:application_performance_management:9.40:*:*:*:*:*:*:*
cpe:2.3:a:microfocus:application_performance_management:9.50:*:*:*:*:*:*:*

06 Feb 2021, 02:12

Type Values Removed Values Added
New CVE

Information

Published : 2021-02-06 01:15

Updated : 2023-12-10 13:41


NVD link : CVE-2021-22499

Mitre link : CVE-2021-22499

CVE.ORG link : CVE-2021-22499


JSON object : View

Products Affected

microfocus

  • application_performance_management
CWE
CWE-79

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')