Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-45ph-87rf-q9mf

Опубликовано: 07 фев. 2025
Источник: github
Github: Не прошло ревью
CVSS3: 6.1

Описание

An issue was discovered in AudioCodes One Voice Operations Center (OVOC) before 8.4.582. Due to improper neutralization of input via the devices API, an attacker can inject malicious JavaScript code (XSS) to attack logged-in administrator sessions.

An issue was discovered in AudioCodes One Voice Operations Center (OVOC) before 8.4.582. Due to improper neutralization of input via the devices API, an attacker can inject malicious JavaScript code (XSS) to attack logged-in administrator sessions.

EPSS

Процентиль: 25%
0.00085
Низкий

6.1 Medium

CVSS3

Дефекты

CWE-79

Связанные уязвимости

CVSS3: 6.1
nvd
около 1 года назад

An issue was discovered in AudioCodes One Voice Operations Center (OVOC) before 8.4.582. Due to improper neutralization of input via the devices API, an attacker can inject malicious JavaScript code (XSS) to attack logged-in administrator sessions.

EPSS

Процентиль: 25%
0.00085
Низкий

6.1 Medium

CVSS3

Дефекты

CWE-79