Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2020-3902

Опубликовано: 01 апр. 2020
Источник: debian
EPSS Низкий

Описание

An input validation issue was addressed with improved input validation. This issue is fixed in iOS 13.4 and iPadOS 13.4, tvOS 13.4, Safari 13.1, iTunes for Windows 12.10.5, iCloud for Windows 10.9.3, iCloud for Windows 7.18. Processing maliciously crafted web content may lead to a cross site scripting attack.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
webkit2gtkfixed2.28.0-2package
webkit2gtkignoredstretchpackage
webkit2gtkignoredjessiepackage
wpewebkitfixed2.28.0-1package

Примечания

  • https://webkitgtk.org/security/WSA-2020-0005.html

EPSS

Процентиль: 55%
0.00322
Низкий

Связанные уязвимости

CVSS3: 6.1
ubuntu
около 5 лет назад

An input validation issue was addressed with improved input validation. This issue is fixed in iOS 13.4 and iPadOS 13.4, tvOS 13.4, Safari 13.1, iTunes for Windows 12.10.5, iCloud for Windows 10.9.3, iCloud for Windows 7.18. Processing maliciously crafted web content may lead to a cross site scripting attack.

CVSS3: 6.1
redhat
около 5 лет назад

An input validation issue was addressed with improved input validation. This issue is fixed in iOS 13.4 and iPadOS 13.4, tvOS 13.4, Safari 13.1, iTunes for Windows 12.10.5, iCloud for Windows 10.9.3, iCloud for Windows 7.18. Processing maliciously crafted web content may lead to a cross site scripting attack.

CVSS3: 6.1
nvd
около 5 лет назад

An input validation issue was addressed with improved input validation. This issue is fixed in iOS 13.4 and iPadOS 13.4, tvOS 13.4, Safari 13.1, iTunes for Windows 12.10.5, iCloud for Windows 10.9.3, iCloud for Windows 7.18. Processing maliciously crafted web content may lead to a cross site scripting attack.

CVSS3: 6.1
github
около 3 лет назад

An input validation issue was addressed with improved input validation. This issue is fixed in iOS 13.4 and iPadOS 13.4, tvOS 13.4, Safari 13.1, iTunes for Windows 12.10.5, iCloud for Windows 10.9.3, iCloud for Windows 7.18. Processing maliciously crafted web content may lead to a cross site scripting attack.

CVSS3: 6.1
fstec
около 5 лет назад

Уязвимость операционных систем iOS, iPadOS, macOS, tvOS, браузера Safari, мультимедийного проигрывателя iTunes и сервиса iCloud, существующая из-за непринятия мер по защите структуры веб-страницы, позволяющая нарушителю выполнить вредоносные межсайтовые сценарии

EPSS

Процентиль: 55%
0.00322
Низкий