Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-3pjj-89j6-25qq

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Parts of the Puppet Enterprise Console 3.x were found to be susceptible to clickjacking and CSRF (Cross-Site Request Forgery) attacks. This would allow an attacker to redirect user input to an untrusted site or hijack a user session.

Parts of the Puppet Enterprise Console 3.x were found to be susceptible to clickjacking and CSRF (Cross-Site Request Forgery) attacks. This would allow an attacker to redirect user input to an untrusted site or hijack a user session.

EPSS

Процентиль: 34%
0.0014
Низкий

Связанные уязвимости

CVSS3: 8.8
nvd
почти 6 лет назад

Parts of the Puppet Enterprise Console 3.x were found to be susceptible to clickjacking and CSRF (Cross-Site Request Forgery) attacks. This would allow an attacker to redirect user input to an untrusted site or hijack a user session.

EPSS

Процентиль: 34%
0.0014
Низкий