Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-2j2q-7hmh-32j8

Опубликовано: 22 дек. 2025
Источник: github
Github: Не прошло ревью
CVSS3: 6.1

Описание

Schlix CMS before v2.2.9-5 is vulnerable to Cross Site Scripting (XSS). Due to lack of javascript sanitization in the login form, incorrect login attempts in logs are triggered as XSS in the admin panel.

Schlix CMS before v2.2.9-5 is vulnerable to Cross Site Scripting (XSS). Due to lack of javascript sanitization in the login form, incorrect login attempts in logs are triggered as XSS in the admin panel.

EPSS

Процентиль: 10%
0.00035
Низкий

6.1 Medium

CVSS3

Дефекты

CWE-79

Связанные уязвимости

CVSS3: 6.1
nvd
около 2 месяцев назад

Schlix CMS before v2.2.9-5 is vulnerable to Cross Site Scripting (XSS). Due to lack of javascript sanitization in the login form, incorrect login attempts in logs are triggered as XSS in the admin panel.

EPSS

Процентиль: 10%
0.00035
Низкий

6.1 Medium

CVSS3

Дефекты

CWE-79