VYPR
Medium severity6.1NVD Advisory· Published Jun 7, 2021· Updated Jun 17, 2026

CVE-2021-33904

CVE-2021-33904

Description

In Accela Civic Platform through 21.1, the security/hostSignon.do parameter servProvCode is vulnerable to XSS. NOTE: The vendor states "there are configurable security flags and we are unable to reproduce them with the available information.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

3
  • cpe:2.3:a:accela:civic_platform:*:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:accela:civic_platform:*:*:*:*:*:*:*:*range: <=21.1
    • (no CPE)range: <=21.1
  • Accela/Civic Platformdescription

Patches

Vulnerability mechanics

References

2

News mentions

0

No linked articles in our index yet.