Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-3297-hxj5-867g

Опубликовано: 04 мар. 2025
Источник: github
Github: Не прошло ревью
CVSS3: 4.6

Описание

A Cross Site Scripting (XSS) vulnerability exists in TeamPasswordManager v12.162.284 and before that could allow a remote attacker to execute arbitrary JavaScript in the web browser of a user, by including a malicious payload into the 'name' parameter when creating a new password in the "My Passwords" page.

A Cross Site Scripting (XSS) vulnerability exists in TeamPasswordManager v12.162.284 and before that could allow a remote attacker to execute arbitrary JavaScript in the web browser of a user, by including a malicious payload into the 'name' parameter when creating a new password in the "My Passwords" page.

EPSS

Процентиль: 20%
0.00063
Низкий

4.6 Medium

CVSS3

Дефекты

CWE-79

Связанные уязвимости

CVSS3: 4.6
nvd
11 месяцев назад

A Cross Site Scripting (XSS) vulnerability exists in TeamPasswordManager v12.162.284 and before that could allow a remote attacker to execute arbitrary JavaScript in the web browser of a user, by including a malicious payload into the 'name' parameter when creating a new password in the "My Passwords" page.

EPSS

Процентиль: 20%
0.00063
Низкий

4.6 Medium

CVSS3

Дефекты

CWE-79