VYPR
Unrated severityNVD Advisory· Published Apr 27, 2022· Updated Sep 16, 2024

Bender Charge Controller: Cross-site Scripting

CVE-2021-34590

Description

In Bender/ebee Charge Controllers in multiple versions are prone to Cross-site Scripting. An authenticated attacker could write HTML Code into configuration values. These values are not properly escaped when displayed.

Affected products

2

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

1

News mentions

0

No linked articles in our index yet.