CVE-2021-47843

Tagstoo 2.0.1 contains a stored cross-site scripting vulnerability that allows attackers to inject malicious payloads through files or custom tags. Attackers can execute arbitrary JavaScript code to spawn system processes, access files, and perform remote code execution on the victim's computer.
References
Configurations

Configuration 1 (hide)

cpe:2.3:a:tagstoo:tagstoo:2.0.1:*:*:*:*:*:*:*

History

No history.

Information

Published : 2026-01-15 16:16

Updated : 2026-02-02 16:16


NVD link : CVE-2021-47843

Mitre link : CVE-2021-47843

CVE.ORG link : CVE-2021-47843


JSON object : View

Products Affected

tagstoo

  • tagstoo
CWE
CWE-79

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')