Vulnerabilities > Element IT > Http Commander > 3.1.9
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2022-01-13 | CVE-2021-40813 | Cross-site Scripting vulnerability in Element-It Http Commander 3.1.9 A cross-site scripting (XSS) vulnerability in the "Zip content" feature in Element-IT HTTP Commander 3.1.9 allows remote authenticated users to inject arbitrary web script or HTML via filenames. | 3.5 |