Sploitus

CVE-2021-37152

1 known exploit for CVE-2021-37152

Multiple XSS issues exist in Sonatype Nexus Repository Manager 3 before 3.33.0. An authenticated attacker with the ability to add HTML files to a repository could redirect users to Nexus Repository Manager’s pages with code modifications.

Sonatype Nexus Repository Manager
< 3.33.0
Fix
Available
CVSS 3.1
5.4 MEDIUM
EPSS
24.4% (98th percentile)
Weakness
CWE-79
NVD status
Modified
Published
2021-08-10
CVE-2021-37152 at NVD
Authoritative description, scoring and affected products

1 known exploit for CVE-2021-37152

Proof-of-concept code and exploit modules indexed by Sploitus