Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Tue, 03 Feb 2026 15:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Authorize.net
Authorize.net payment Terminal Criticalgears Criticalgears paypal Pro Payment Terminal Criticalgears stripe Payment Terminal |
|
| Vendors & Products |
Authorize.net
Authorize.net payment Terminal Criticalgears Criticalgears paypal Pro Payment Terminal Criticalgears stripe Payment Terminal |
Mon, 02 Feb 2026 20:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Sun, 01 Feb 2026 12:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Multiple payment terminal versions contain non-persistent cross-site scripting vulnerabilities in billing and payment information input fields. Attackers can inject malicious script code through vulnerable parameters to manipulate client-side requests and potentially execute session hijacking or phishing attacks. | |
| Title | Payment Terminal Multiple Versions Non-Persistent Cross-Site Scripting | |
| Weaknesses | CWE-79 | |
| References |
|
|
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: VulnCheck
Published:
Updated: 2026-02-02T20:03:43.685Z
Reserved: 2026-01-18T12:35:05.173Z
Link: CVE-2021-47885
Updated: 2026-02-02T20:03:29.601Z
Status : Deferred
Published: 2026-02-01T13:15:54.557
Modified: 2026-04-15T00:35:42.020
Link: CVE-2021-47885
No data.
OpenCVE Enrichment
Updated: 2026-02-02T09:26:25Z