Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-3w73-4p4p-f992

Опубликовано: 23 фев. 2022
Источник: github
Github: Не прошло ревью
CVSS3: 6.1

Описание

Checkmk <=2.0.0p19 contains a Cross Site Scripting (XSS) vulnerability. While creating or editing a user attribute, the Help Text is subject to HTML injection, which can be triggered for editing a user.

Checkmk <=2.0.0p19 contains a Cross Site Scripting (XSS) vulnerability. While creating or editing a user attribute, the Help Text is subject to HTML injection, which can be triggered for editing a user.

EPSS

Процентиль: 69%
0.00616
Низкий

6.1 Medium

CVSS3

Дефекты

CWE-79

Связанные уязвимости

CVSS3: 6.1
ubuntu
почти 4 года назад

Checkmk <=2.0.0p19 contains a Cross Site Scripting (XSS) vulnerability. While creating or editing a user attribute, the Help Text is subject to HTML injection, which can be triggered for editing a user.

CVSS3: 6.1
nvd
почти 4 года назад

Checkmk <=2.0.0p19 contains a Cross Site Scripting (XSS) vulnerability. While creating or editing a user attribute, the Help Text is subject to HTML injection, which can be triggered for editing a user.

CVSS3: 6.1
debian
почти 4 года назад

Checkmk <=2.0.0p19 contains a Cross Site Scripting (XSS) vulnerability ...

EPSS

Процентиль: 69%
0.00616
Низкий

6.1 Medium

CVSS3

Дефекты

CWE-79