Description
A reflected cross site scripting (XSS) vulnerability in dotAdmin/#/c/containers of dotCMS 21.05.1 allows attackers to execute arbitrary commands or HTML via a crafted payload.
Remediation
References
Related Vulnerabilities
PHP Use After Free Vulnerability (CVE-2017-12932)
Roundcube Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2010-0464)
MySQL CVE-2016-0654 Vulnerability (CVE-2016-0654)
Apache Tomcat Permissions, Privileges, and Access Controls Vulnerability (CVE-2014-0050)
ownCloud Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2012-4391)