Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-2rgr-w2hf-5v57

Опубликовано: 04 дек. 2024
Источник: github
Github: Не прошло ревью
CVSS4: 8.2
CVSS3: 7.5

Описание

** INITIAL LIMITED RELEASE **

User Interface (UI) Misrepresentation of Critical Information vulnerability in [WITHHELD] allows Content Spoofing.This issue affects [WITHHELD]: through 2024-12-04.

** INITIAL LIMITED RELEASE **

User Interface (UI) Misrepresentation of Critical Information vulnerability in [WITHHELD] allows Content Spoofing.This issue affects [WITHHELD]: through 2024-12-04.

EPSS

Процентиль: 30%
0.00109
Низкий

8.2 High

CVSS4

7.5 High

CVSS3

Дефекты

CWE-451

Связанные уязвимости

CVSS3: 7.5
nvd
около 1 года назад

User Interface (UI) Misrepresentation of Critical Information vulnerability in DocuSign allows Content Spoofing. 1. Displayed version does not show the layer flattened version, which is provided when the "Print" option is used. 2. Displayed version does not show the layer flattened version, which is provided when the combined download option is used. 3. Displayed version does not show the layer flattened version, which is also the provided version when downloading the result in the uncombined option. Once download, If printed (e.g. via Google Chrome -> Examine the print preview): Will render the vulnerability only, not all layers are flattened. This issue affects DocuSign: through 2024-12-04.

EPSS

Процентиль: 30%
0.00109
Низкий

8.2 High

CVSS4

7.5 High

CVSS3

Дефекты

CWE-451