{"resultsPerPage":1,"startIndex":0,"totalResults":1,"format":"NVD_CVE","version":"2.0","timestamp":"2026-06-16T17:27:10.666","vulnerabilities":[{"cve":{"id":"CVE-2021-3340","sourceIdentifier":"cve@mitre.org","published":"2021-02-01T22:15:14.067","lastModified":"2024-11-21T06:21:19.910","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"A cross-site scripting (XSS) vulnerability in many forms of Wikindx before 5.7.0 and 6.x through 6.4.0 allows remote attackers to inject arbitrary web script or HTML via the message parameter to index.php?action=initLogon or modules/admin/DELETEIMAGES.php."},{"lang":"es","value":"Una vulnerabilidad de tipo cross-site scripting (XSS) en muchas formas de Wikindx versiones anteriores a 5.7.0 y versiones 6.x hasta 6.4.0, permite a atacantes remotos inyectar un script web o HTML arbitrario por medio del parámetro message en index.php?action=initLogon o el archivo modules/admin/DELETEIMAGES.php"}],"metrics":{"cvssMetricV31":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"3.1","vectorString":"CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N","baseScore":6.1,"baseSeverity":"MEDIUM","attackVector":"NETWORK","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"REQUIRED","scope":"CHANGED","confidentialityImpact":"LOW","integrityImpact":"LOW","availabilityImpact":"NONE"},"exploitabilityScore":2.8,"impactScore":2.7}],"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:M/Au:N/C:N/I:P/A:N","baseScore":4.3,"accessVector":"NETWORK","accessComplexity":"MEDIUM","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"PARTIAL","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":8.6,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":true}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"CWE-79"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:wikindx_project:wikindx:*:*:*:*:*:*:*:*","versionEndExcluding":"5.7.0","matchCriteriaId":"BC127208-56D6-4731-BC70-64A7445B9CA7"},{"vulnerable":true,"criteria":"cpe:2.3:a:wikindx_project:wikindx:*:*:*:*:*:*:*:*","versionStartIncluding":"6.0.0","versionEndIncluding":"6.4.0","matchCriteriaId":"FBCFB2D7-3D4E-47E4-9A90-CA88420FFEA6"}]}]}],"references":[{"url":"https://sourceforge.net/p/wikindx/news/2021/01/wikindx-v641-released/","source":"cve@mitre.org","tags":["Release Notes","Third Party Advisory"]},{"url":"https://sourceforge.net/projects/wikindx/","source":"cve@mitre.org","tags":["Product","Third Party Advisory"]},{"url":"https://sourceforge.net/p/wikindx/news/2021/01/wikindx-v641-released/","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Release Notes","Third Party Advisory"]},{"url":"https://sourceforge.net/projects/wikindx/","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Product","Third Party Advisory"]}]}}]}