Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-2r97-2299-vq73

Опубликовано: 27 апр. 2026
Источник: github
Github: Не прошло ревью
CVSS3: 6.1

Описание

A reflected cross-site scripting (XSS) vulnerability exists in WebFileSys version 2.31.1. User-controlled input is reflected into HTML and JavaScript contexts without proper output encoding, allowing arbitrary JavaScript execution in the victim's browser.

A reflected cross-site scripting (XSS) vulnerability exists in WebFileSys version 2.31.1. User-controlled input is reflected into HTML and JavaScript contexts without proper output encoding, allowing arbitrary JavaScript execution in the victim's browser.

EPSS

Процентиль: 22%
0.00299
Низкий

6.1 Medium

CVSS3

Дефекты

CWE-79

Связанные уязвимости

CVSS3: 6.1
nvd
3 месяца назад

A reflected cross-site scripting (XSS) vulnerability exists in WebFileSys version before 2.32.0 and fixed in v.2.32.0. User-controlled input is reflected into HTML and JavaScript contexts without proper output encoding, allowing arbitrary JavaScript execution in the victim's browser via the ftpBackup functionality, authentication input handling, search functionality, and error message rendering components

EPSS

Процентиль: 22%
0.00299
Низкий

6.1 Medium

CVSS3

Дефекты

CWE-79