Security Advisory

CVE-2021-37470

5.4
MEDIUM

Vulnerability Description

In NCH WebDictate v2.13, persistent Cross Site Scripting (XSS) exists in the Recipient Name field. An authenticated user can add or modify the affected field to inject arbitrary JavaScript.
Published Date July 25, 2021
Official Source NIST NVD Advisory