CVE-2021-43696

Source
https://nvd.nist.gov/vuln/detail/CVE-2021-43696
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2021-43696.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2021-43696
Published
2021-11-29T13:15:07.407Z
Modified
2025-11-14T12:34:53.121765Z
Severity
  • 6.1 (Medium) CVSS_V3 - CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N CVSS Calculator
Summary
[none]
Details

twmap v2.91v4.33 is affected by a Cross Site Scripting (XSS) vulnerability. In file list.php, the exit function will terminate the script and print the message to the user. The message will contain $REQUEST then there is a XSS vulnerability.

References

Affected packages

Git / github.com/happyman/twmap

Affected ranges

Type
GIT
Repo
https://github.com/happyman/twmap
Events
Introduced
0 Unknown introduced commit / All previous commits are affected
Last affected

Affected versions

Other

del

v2.*

v2.70_3.76
v2.70_3.8
v2.72_3.8
v2.72_3.81
v2.73_3.85
v2.77_3.86
v2.77_3.93
v2.77_3.97
v2.79_3.99
v2.79_4.02
v2.79_4.03
v2.7_3.76
v2.80_4.12
v2.81_4.12
v2.81_4.14
v2.81_4.15
v2.81_v4.16
v2.81_v4.20
v2.82_v4.25
v2.91_v4.33
v2.9_v4.31