Vehicle Service Management System – ‘Multiple’ Cross-Site Request Forgery (CSRF) Leads to Stored Cross Site Scripting (XSS)

CVE-2021-46080 Exploit Title: Vehicle Service Management System – ‘Multiple’ Cross-Site Request Forgery (CSRF) Leads to Stored Cross Site Scripting (XSS) Exploit Author: P.L.Sanu CVE: CVE-2021-46080 CVSS: 4.8 MEDIUM References: Vehicle Service Management System – ‘Multiple’ Cross-Site Request Forgery (CSRF) Leads to Stored Cross Site Scripting (XSS) https://nvd.nist.gov/vuln/detail/CVE-2021-46080 https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-46080 Description: A Cross Site Request Forgery (CSRF) … Continue reading Vehicle Service Management System – ‘Multiple’ Cross-Site Request Forgery (CSRF) Leads to Stored Cross Site Scripting (XSS)