Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-347x-wrxw-wp8p

Опубликовано: 01 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Incomplete blacklist vulnerability in IISWebAgentIF.dll in the WebID RSA Authentication Agent 5.3, and possibly earlier, allows remote attackers to conduct cross-site scripting (XSS) attacks via the postdata parameter, due to an incomplete fix for CVE-2005-1118.

Incomplete blacklist vulnerability in IISWebAgentIF.dll in the WebID RSA Authentication Agent 5.3, and possibly earlier, allows remote attackers to conduct cross-site scripting (XSS) attacks via the postdata parameter, due to an incomplete fix for CVE-2005-1118.

EPSS

Процентиль: 66%
0.00508
Низкий

Дефекты

CWE-79

Связанные уязвимости

nvd
почти 18 лет назад

Incomplete blacklist vulnerability in IISWebAgentIF.dll in the WebID RSA Authentication Agent 5.3, and possibly earlier, allows remote attackers to conduct cross-site scripting (XSS) attacks via the postdata parameter, due to an incomplete fix for CVE-2005-1118.

EPSS

Процентиль: 66%
0.00508
Низкий

Дефекты

CWE-79