Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2017-7271

Опубликовано: 27 мар. 2017
Источник: debian

Описание

Reflected Cross-site scripting (XSS) vulnerability in Yii Framework before 2.0.11, when development mode is used, allows remote attackers to inject arbitrary web script or HTML via crafted request data that is mishandled on the debug-mode exception screen.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
yiiitppackage

Связанные уязвимости

CVSS3: 6.1
nvd
почти 9 лет назад

Reflected Cross-site scripting (XSS) vulnerability in Yii Framework before 2.0.11, when development mode is used, allows remote attackers to inject arbitrary web script or HTML via crafted request data that is mishandled on the debug-mode exception screen.

CVSS3: 6.1
github
больше 3 лет назад

Yii Framework Reflected XSS