Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-268v-xr6v-xg9g

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 5.4

Описание

A stored cross-site scripting (XSS) vulnerability was found in Limesurvey before 3.17.14 that allows authenticated users with correct permissions to inject arbitrary web script or HTML via titles of admin box buttons on the home page.

A stored cross-site scripting (XSS) vulnerability was found in Limesurvey before 3.17.14 that allows authenticated users with correct permissions to inject arbitrary web script or HTML via titles of admin box buttons on the home page.

EPSS

Процентиль: 56%
0.00336
Низкий

5.4 Medium

CVSS3

Дефекты

CWE-79

Связанные уязвимости

CVSS3: 5.4
nvd
около 6 лет назад

A stored cross-site scripting (XSS) vulnerability was found in Limesurvey before 3.17.14 that allows authenticated users with correct permissions to inject arbitrary web script or HTML via titles of admin box buttons on the home page.

CVSS3: 5.4
debian
около 6 лет назад

A stored cross-site scripting (XSS) vulnerability was found in Limesur ...

EPSS

Процентиль: 56%
0.00336
Низкий

5.4 Medium

CVSS3

Дефекты

CWE-79