Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-2x3r-7c7j-hfjv

Опубликовано: 26 мая 2025
Источник: github
Github: Не прошло ревью
CVSS4: 4.8
CVSS3: 2.4

Описание

A vulnerability classified as problematic was found in Realce Tecnologia Queue Ticket Kiosk up to 20250517. Affected by this vulnerability is an unknown functionality of the file /adm/index.php of the component Cadastro de Administrador Page. The manipulation of the argument Name/Usuário leads to cross site scripting. The attack can be launched remotely. The vendor was contacted early about this disclosure but did not respond in any way.

A vulnerability classified as problematic was found in Realce Tecnologia Queue Ticket Kiosk up to 20250517. Affected by this vulnerability is an unknown functionality of the file /adm/index.php of the component Cadastro de Administrador Page. The manipulation of the argument Name/Usuário leads to cross site scripting. The attack can be launched remotely. The vendor was contacted early about this disclosure but did not respond in any way.

EPSS

Процентиль: 14%
0.00045
Низкий

4.8 Medium

CVSS4

2.4 Low

CVSS3

Дефекты

CWE-79

Связанные уязвимости

CVSS3: 2.4
nvd
9 месяцев назад

A vulnerability classified as problematic was found in Realce Tecnologia Queue Ticket Kiosk up to 20250517. Affected by this vulnerability is an unknown functionality of the file /adm/index.php of the component Cadastro de Administrador Page. The manipulation of the argument Name/Usuário leads to cross site scripting. The attack can be launched remotely. The vendor was contacted early about this disclosure but did not respond in any way.

EPSS

Процентиль: 14%
0.00045
Низкий

4.8 Medium

CVSS4

2.4 Low

CVSS3

Дефекты

CWE-79