Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2023-29454

Опубликовано: 13 июл. 2023
Источник: debian
EPSS Низкий

Описание

Stored or persistent cross-site scripting (XSS) is a type of XSS where the attacker first sends the payload to the web application, then the application saves the payload (e.g., in a database or server-side text files), and finally, the application unintentionally executes the payload for every victim visiting its web pages.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
zabbixfixed1:6.0.23+dfsg-1package
zabbixignoredbookwormpackage

Примечания

  • https://support.zabbix.com/browse/ZBX-22985

EPSS

Процентиль: 70%
0.00646
Низкий

Связанные уязвимости

CVSS3: 5.4
ubuntu
больше 2 лет назад

Stored or persistent cross-site scripting (XSS) is a type of XSS where the attacker first sends the payload to the web application, then the application saves the payload (e.g., in a database or server-side text files), and finally, the application unintentionally executes the payload for every victim visiting its web pages.

CVSS3: 5.4
nvd
больше 2 лет назад

Stored or persistent cross-site scripting (XSS) is a type of XSS where the attacker first sends the payload to the web application, then the application saves the payload (e.g., in a database or server-side text files), and finally, the application unintentionally executes the payload for every victim visiting its web pages.

suse-cvrf
больше 2 лет назад

Security update for zabbix

CVSS3: 5.4
github
больше 2 лет назад

Stored or persistent cross-site scripting (XSS) is a type of XSS where the attacker first sends the payload to the web application, then the application saves the payload (e.g., in a database or server-side text files), and finally, the application unintentionally executes the payload for every victim visiting its web pages.

CVSS3: 5.4
fstec
больше 2 лет назад

Уязвимость универсальной системы мониторинга Zabbix, связанная с непринятием мер по защите структуры веб-страницы, позволяющая нарушителю получить доступ к конфиденциальным данным и нарушить их целостность

EPSS

Процентиль: 70%
0.00646
Низкий