Medium severity6.1NVD Advisory· Published Jun 14, 2017· Updated Jun 17, 2026
CVE-2017-9621
CVE-2017-9621
Description
Cross-site scripting (XSS) vulnerability in modules/Base/Lang/Administrator/update_translation.php in EPESI in Telaxus/EPESI 1.8.2 and earlier allows remote attackers to inject arbitrary web script or HTML via the (1) original or (2) new parameter.
Affected products
2Patches
Vulnerability mechanics
References
2- github.com/Telaxus/EPESI/commit/3cd666558c89d9c4b27eb74bf6b8e81b4f6e7118nvdPatchThird Party Advisory
- github.com/Telaxus/EPESI/issues/185nvdIssue TrackingPatchThird Party Advisory
News mentions
0No linked articles in our index yet.