CVE-2021-41391

In Ericsson ECM before 18.0, it was observed that Security Management Endpoint in User Profile Management Section is vulnerable to stored XSS via a name, leading to session hijacking and full account takeover.
References
Configurations

Configuration 1

cpe:2.3:a:ericsson:enterprise_content_management:18.0:*:*:*:*:*:*:*

Information

Published : 2021-09-17 09:15

Updated : 2021-09-29 07:53


NVD link : CVE-2021-41391

Mitre link : CVE-2021-41391

Products Affected
No products.
CWE