Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-3pjj-89j6-25qq

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Parts of the Puppet Enterprise Console 3.x were found to be susceptible to clickjacking and CSRF (Cross-Site Request Forgery) attacks. This would allow an attacker to redirect user input to an untrusted site or hijack a user session.

Parts of the Puppet Enterprise Console 3.x were found to be susceptible to clickjacking and CSRF (Cross-Site Request Forgery) attacks. This would allow an attacker to redirect user input to an untrusted site or hijack a user session.

EPSS

Процентиль: 38%
0.00452
Низкий

Связанные уязвимости

CVSS3: 8.8
nvd
больше 6 лет назад

Parts of the Puppet Enterprise Console 3.x were found to be susceptible to clickjacking and CSRF (Cross-Site Request Forgery) attacks. This would allow an attacker to redirect user input to an untrusted site or hijack a user session.

EPSS

Процентиль: 38%
0.00452
Низкий