Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-2rff-cr3q-94jm

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Survey administrator can craft a survey in such way that malicious code can be executed in the agent interface (i.e. another agent who wants to make changes in the survey). This issue affects: OTRS AG Survey 6.0.x version 6.0.20 and prior versions; 7.0.x version 7.0.19 and prior versions.

Survey administrator can craft a survey in such way that malicious code can be executed in the agent interface (i.e. another agent who wants to make changes in the survey). This issue affects: OTRS AG Survey 6.0.x version 6.0.20 and prior versions; 7.0.x version 7.0.19 and prior versions.

EPSS

Процентиль: 58%
0.00364
Низкий

Дефекты

CWE-79

Связанные уязвимости

CVSS3: 3.5
ubuntu
почти 5 лет назад

Survey administrator can craft a survey in such way that malicious code can be executed in the agent interface (i.e. another agent who wants to make changes in the survey). This issue affects: OTRS AG Survey 6.0.x version 6.0.20 and prior versions; 7.0.x version 7.0.19 and prior versions.

CVSS3: 3.5
nvd
почти 5 лет назад

Survey administrator can craft a survey in such way that malicious code can be executed in the agent interface (i.e. another agent who wants to make changes in the survey). This issue affects: OTRS AG Survey 6.0.x version 6.0.20 and prior versions; 7.0.x version 7.0.19 and prior versions.

EPSS

Процентиль: 58%
0.00364
Низкий

Дефекты

CWE-79