MEDIUM🇵🇱 Wersja polska

CVE-2021-39285

CVSS 6.1v3.1pub. 2021-09-07upd. 2024-11-21

A XSS vulnerability exists in Versa Director Release: 16.1R2 Build: S8. An attacker can use the administration web interface URL to create a XSS based attack.

CVSS Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
  • Versa Networks Versa Director

    APP
    Versa-Networks
    16.1r2
🔵
CHECK WITH VENDOR
No clear patch data available. Check vendor references.
Tags
XSS
CWE
References

Related vulnerabilities

CVE-2025-24288CRITICAL9.8PL ✓same product

Versa Director: domyślne dane uwierzytelniające umożliwiają pełny dostęp

CVE-2019-25029CRITICAL9.8PL ✓same product

Command injection w Versa Director umożliwiający RCE

CVE-2024-39717HIGH7.2⚠ KEVsame product

The Versa Director GUI provides an option to customize the look and feel of the user interface. This option is...

CVE-2025-23171HIGH7.2same product

The Versa Director SD-WAN orchestration platform provides an option to upload various types of files. The Vers...

CVE-2025-23168MEDIUM6.3same product

The Versa Director SD-WAN orchestration platform implements Two-Factor Authentication (2FA) using One-Time Pas...