Description
Ignite Realtime Openfire 4.6.0 has plugins/dbaccess/db-access.jsp sql Stored XSS.
Remediation
References
https://www.exploit-db.com/exploits/49235
Related Vulnerabilities
CVE-2020-36180 Vulnerability in maven package com.fasterxml.jackson.core:jackson-databind
CVE-2021-39199 Vulnerability in npm package remark-html
CVE-2023-23630 Vulnerability in npm package eta
CVE-2022-0341 Vulnerability in npm package vditor
CVE-2021-42392 Vulnerability in maven package com.h2database:h2