Knowage Suite 7.3 contains an unauthenticated reflected cross-site scripting vulnerability. An attacker can inject arbitrary web script in ‘/servlet/AdapterHTTP’ via the ‘targetService’ parameter.
View the template here CVE-2021-30213.yaml
References:
https://github.com/piuppi/Proof-of-Concepts