CVE-2021-31521

Trend Micro InterScan Web Security Virtual Appliance version 6.5 was found to have a reflected cross-site scripting (XSS) vulnerability in the product's Captive Portal.
References
Link Resource
https://success.trendmicro.com/solution/000286452 Patch Vendor Advisory
Configurations

Configuration 1 (hide)

cpe:2.3:a:trendmicro:interscan_web_security_virtual_appliance:6.5:sp2:*:*:*:*:*:*

History

21 Jun 2021, 21:48

Type Values Removed Values Added
CWE CWE-79
References (MISC) https://success.trendmicro.com/solution/000286452 - (MISC) https://success.trendmicro.com/solution/000286452 - Patch, Vendor Advisory
CVSS v2 : unknown
v3 : unknown
v2 : 3.5
v3 : 5.4
CPE cpe:2.3:a:trendmicro:interscan_web_security_virtual_appliance:6.5:sp2:*:*:*:*:*:*

17 Jun 2021, 12:15

Type Values Removed Values Added
New CVE

Information

Published : 2021-06-17 12:15

Updated : 2023-12-10 13:55


NVD link : CVE-2021-31521

Mitre link : CVE-2021-31521

CVE.ORG link : CVE-2021-31521


JSON object : View

Products Affected

trendmicro

  • interscan_web_security_virtual_appliance
CWE
CWE-79

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')