← Back to browse · API

CVE-2021-21801

Severity
CRITICAL
CVSS
9.6
EPSS
0.63415
Risk score
60.6
CISA KEV
No
PoC
No
Published
2021-07-16
Modified
2024-08-03
First seen
2026-08-08
Aliases
EUVD-2021-8973, GHSA-V3M2-QVX7-G2WH
Products
n/a:Advantech Advantech R-SeeNet 2.4.12 (20.10.2020)
Sources
euvd EUVD-2021-8973

Description

This vulnerability is present in device_graph_page.php script, which is a part of the Advantech R-SeeNet web applications. A specially crafted URL by an attacker and visited by a victim can lead to arbitrary JavaScript code execution.

References