vendor:
ATutor
by:
7.5
CVSS
HIGH
Cross-Site Scripting
79
CWE
Product Name: ATutor
Affected Version From: 1
Affected Version To:
Patch Exists: NO
Related CWE:
CPE:
Platforms Tested:
Multiple Cross-Site Scripting Vulnerabilities in ATutor
An attacker can execute arbitrary HTML and script code in the browser of a user, allowing them to steal authentication credentials and launch other attacks.
Mitigation:
Apply the latest patches and updates from the vendor. Avoid clicking on suspicious links or visiting untrusted websites.