Vulnerabilities (CVE)

Filtered by vendor Nsa Subscribe
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2021-32092 1 Nsa 1 Emissary 2021-05-13 4.3 MEDIUM 6.1 MEDIUM
A Cross-site scripting (XSS) vulnerability in the DocumentAction component of U.S. National Security Agency (NSA) Emissary 5.9.0 allows remote attackers to inject arbitrary web script or HTML via the uuid parameter.
CVE-2021-32093 1 Nsa 1 Emissary 2021-05-13 4.0 MEDIUM 6.5 MEDIUM
The ConfigFileAction component of U.S. National Security Agency (NSA) Emissary 5.9.0 allows an authenticated user to read arbitrary files via the ConfigName parameter.