CVE-2021-44196
medium
CVSS v3
6.1
CVSS v2
—
VIR risk
6.1
Description
Improper Neutralization of Script-Related HTML Tags in a Web Page (Basic XSS) vulnerability in UBIT Information Technologies Student Information Management System. This issue affects Student Information Management System: before 20211126.
Predictions
Exploit likelihood
71%
Patch ETA
—
Heuristic predictions, AS-IS, for prioritization only.
Mitigations
Vendor advisory: iletisim@usom.gov.tr — https://www.usom.gov.tr/bildirim/tr-23-0131
Application impact
| Vendor | Product | Versions | Fixed |
|---|---|---|---|
| ubit | student_information_management_system | {"endExcluding":"20211126"} | 20211126 |
References
CWEs
CWE-80 CWE-79
Verify integrity in audit chain (admin only). AS-IS.