CVE-2021-35303 - Zammad Zammad
Moderate 6.1
Cross Site Scripting (XSS) in Zammad 1.0.x up to 4.0.0 allows remote attackers to execute arbitrary web script or HTML via the User Avatar attribute.
Affected software
Zammad Zammad
Cross Site Scripting (XSS) in Zammad 1.0.x up to 4.0.0 allows remote attackers to execute arbitrary web script or HTML via the User Avatar attribute.
Zammad Zammad
CVE alerts, vulnerability alerts, latest versions and news matched to your software stack.