Medium severity5.4NVD Advisory· Published Jan 29, 2021· Updated Jun 17, 2026
CVE-2021-3298
CVE-2021-3298
Description
Collabtive 3.1 allows XSS when an authenticated user enters an XSS payload into the address section of the profile edit page, aka the manageuser.php?action=edit address1 parameter.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3cpe:2.3:a:o-dyn:collabtive:3.1:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:o-dyn:collabtive:3.1:*:*:*:*:*:*:*
- (no CPE)range: <=3.1
- Collabtive/Collabtivedescription
Patches
Vulnerability mechanics
References
2- www.exploit-db.com/exploits/49468nvdExploitThird Party AdvisoryVDB Entry
- collabtive.o-dyn.de/forum/viewforum.phpnvdVendor Advisory
News mentions
0No linked articles in our index yet.