Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-3r49-5cp4-92j3

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 6.1

Описание

A remote web page could inject arbitrary HTML code into the Oculus Browser UI, allowing an attacker to spoof UI and potentially execute code. This affects the Oculus Browser starting from version 5.2.7 until 5.7.11.

A remote web page could inject arbitrary HTML code into the Oculus Browser UI, allowing an attacker to spoof UI and potentially execute code. This affects the Oculus Browser starting from version 5.2.7 until 5.7.11.

EPSS

Процентиль: 58%
0.00371
Низкий

6.1 Medium

CVSS3

Дефекты

CWE-74
CWE-79

Связанные уязвимости

CVSS3: 6.1
nvd
почти 7 лет назад

A remote web page could inject arbitrary HTML code into the Oculus Browser UI, allowing an attacker to spoof UI and potentially execute code. This affects the Oculus Browser starting from version 5.2.7 until 5.7.11.

EPSS

Процентиль: 58%
0.00371
Низкий

6.1 Medium

CVSS3

Дефекты

CWE-74
CWE-79