4.3
CVSSv2

CVE-2021-40868

Published: 21/09/2021 Updated: 02/10/2021
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
CVSS v3 Base Score: 6.1 | Impact Score: 2.7 | Exploitability Score: 2.8
VMScore: 383
Vector: AV:N/AC:M/Au:N/C:N/I:P/A:N

Vulnerability Summary

In Cloudron 6.2, the returnTo parameter on the login page is vulnerable to Reflected XSS.

Vulnerable Product Search on Vulmon Subscribe to Product

cloudron cloudron 6.2

Exploits

Cloudron version 62 suffers from a cross site scripting vulnerability ...