CVE-2021-47743

PUBLISHED
12/31/2025 83251b91-4cc7-4094-a5c7-464a1b83ea10

Technical Description

COMMAX Biometric Access Control System 1.0.0 contains an unauthenticated reflected cross-site scripting vulnerability in cookie parameters 'CMX_ADMIN_NM' and 'CMX_COMPLEX_NM'. Attackers can inject malicious HTML and JavaScript code into these cookie values to execute arbitrary scripts in a victim's browser session.

Affected Products

COMMAX Co., Ltd.
COMMAX Biometric Access Control System
1.0.0

References

Impact Analysis

Attack Vector Network
Attack Complexity Low
Privileges Required None