3.5
CVSSv2

CVE-2021-40509

Published: 04/09/2021 Updated: 09/09/2021
CVSS v2 Base Score: 3.5 | Impact Score: 2.9 | Exploitability Score: 6.8
CVSS v3 Base Score: 5.4 | Impact Score: 2.7 | Exploitability Score: 2.3
VMScore: 312
Vector: AV:N/AC:M/Au:S/C:N/I:P/A:N

Vulnerability Summary

ViewCommon.java in JForum2 2.7.0 allows XSS via a user signature.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

jforum jforum 2.7.0

Mailing Lists

-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 On Thu, Sep 02, 2021 at 04:55:24PM +0800, kun song wrote: CVE-2021-40509 has been assigned for this vulnerability cvemitreorg/cgi-bin/cvenamecgi?name=CVE-2021-40509 - -- Henri Salo -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEE/aVSDznAZReWTkxKJ633pE6qdXQFAmE3GGgACgkQJ633pE6q dXRbUA/ ...