« Volver al listado

CVE-2021-44649

Estado: ModificadaMedia (5.4)—

Django CMS 3.7.3 does not validate the plugin_type parameter while generating error messages for an invalid plugin type, resulting in a Cross Site Scripting (XSS) vulnerability. The vulnerability allows an attacker to execute arbitrary JavaScript code in the web browser of the affected user.

CVSS

Probabilidad de explotación (EPSS)

EPSS (Exploit Prediction Scoring System, de FIRST) estima la probabilidad de que una vulnerabilidad sea explotada en 30 días. Complementa a CVSS (impacto) y a CISA KEV (explotación confirmada).

Tecnologías afectadas (1)

CWE

Referencias

JSON original (NVD)

Mostrar
{
  "id": "CVE-2021-44649",
  "cveTags": [],
  "metrics": {
    "cvssMetricV2": [
      {
        "type": "Primary",
        "source": "nvd@nist.gov",
        "cvssData": {
          "version": "2.0",
          "baseScore": 3.5,
          "accessVector": "NETWORK",
          "vectorString": "AV:N/AC:M/Au:S/C:N/I:P/A:N",
          "authentication": "SINGLE",
          "integrityImpact": "PARTIAL",
          "accessComplexity": "MEDIUM",
          "availabilityImpact": "NONE",
          "confidentialityImpact": "NONE"
        },
        "acInsufInfo": false,
        "impactScore": 2.9,
        "baseSeverity": "LOW",
        "obtainAllPrivilege": false,
        "exploitabilityScore": 6.8,
        "obtainUserPrivilege": false,
        "obtainOtherPrivilege": false,
        "userInteractionRequired": true
      }
    ],
    "cvssMetricV31": [
      {
        "type": "Primary",
        "source": "nvd@nist.gov",
        "cvssData": {
          "scope": "CHANGED",
          "version": "3.1",
          "baseScore": 5.4,
          "attackVector": "NETWORK",
          "baseSeverity": "MEDIUM",
          "vectorString": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N",
          "integrityImpact": "LOW",
          "userInteraction": "REQUIRED",
          "attackComplexity": "LOW",
          "availabilityImpact": "NONE",
          "privilegesRequired": "LOW",
          "confidentialityImpact": "LOW"
        },
        "impactScore": 2.7,
        "exploitabilityScore": 2.3
      }
    ]
  },
  "affected": [
    {
      "source": "cve@mitre.org",
      "affectedData": [
        {
          "vendor": "n/a",
          "product": "n/a",
          "versions": [
            {
              "status": "affected",
              "version": "n/a"
            }
          ]
        }
      ]
    }
  ],
  "published": "2022-01-12T13:15:07.737",
  "references": [
    {
      "url": "https://sahildhar.github.io/blogpost/Django-CMS-Reflected-XSS-Vulnerability/",
      "tags": [
        "Exploit",
        "Third Party Advisory"
      ],
      "source": "cve@mitre.org"
    },
    {
      "url": "https://www.django-cms.org/en/blog/2020/07/22/django-cms-security-updates-1/",
      "tags": [
        "Vendor Advisory"
      ],
      "source": "cve@mitre.org"
    },
    {
      "url": "https://sahildhar.github.io/blogpost/Django-CMS-Reflected-XSS-Vulnerability/",
      "tags": [
        "Exploit",
        "Third Party Advisory"
      ],
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    },
    {
      "url": "https://www.django-cms.org/en/blog/2020/07/22/django-cms-security-updates-1/",
      "tags": [
        "Vendor Advisory"
      ],
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    }
  ],
  "vulnStatus": "Modified",
  "weaknesses": [
    {
      "type": "Primary",
      "source": "nvd@nist.gov",
      "description": [
        {
          "lang": "en",
          "value": "CWE-79"
        }
      ]
    }
  ],
  "descriptions": [
    {
      "lang": "en",
      "value": "Django CMS 3.7.3 does not validate the plugin_type parameter while generating error messages for an invalid plugin type, resulting in a Cross Site Scripting (XSS) vulnerability. The vulnerability allows an attacker to execute arbitrary JavaScript code in the web browser of the affected user."
    },
    {
      "lang": "es",
      "value": "Django CMS versión 3.7.3, no comprueba el parámetro plugin_type mientras genera mensajes de error para un tipo de plugin no válido, resultando en una vulnerabilidad de tipo Cross Site Scripting (XSS). La vulnerabilidad permite a un atacante ejecutar código JavaScript arbitrario en el navegador web del usuario afectado"
    }
  ],
  "lastModified": "2026-06-17T04:12:38.370",
  "configurations": [
    {
      "nodes": [
        {
          "negate": false,
          "cpeMatch": [
            {
              "criteria": "cpe:2.3:a:django-cms:django_cms:*:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "D3493A6A-D5BC-49FA-88D9-1BF22E62B4DD",
              "versionEndExcluding": "3.4.7",
              "versionStartIncluding": "3.4.0"
            },
            {
              "criteria": "cpe:2.3:a:django-cms:django_cms:*:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "A14A7554-8C03-410F-893A-947AB40BC9CD",
              "versionEndExcluding": "3.5.4",
              "versionStartIncluding": "3.5.0"
            },
            {
              "criteria": "cpe:2.3:a:django-cms:django_cms:*:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "BF6DC761-7FC8-4425-9A2F-2EA44B26887A",
              "versionEndExcluding": "3.6.1",
              "versionStartIncluding": "3.6.0"
            },
            {
              "criteria": "cpe:2.3:a:django-cms:django_cms:*:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "6E92BC14-82C2-47D0-A046-1863184F519E",
              "versionEndExcluding": "3.7.4",
              "versionStartIncluding": "3.7.0"
            }
          ],
          "operator": "OR"
        }
      ]
    }
  ],
  "sourceIdentifier": "cve@mitre.org"
}