Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-4j5j-2gqc-53xf

Опубликовано: 12 мар. 2024
Источник: github
Github: Не прошло ревью
CVSS3: 6.1

Описание

Pleasanter 1.3.49.0 and earlier contains a cross-site scripting vulnerability. If an attacker tricks the user to access the product with a specially crafted URL and perform a specific operation, an arbitrary script may be executed on the web browser of the user.

Pleasanter 1.3.49.0 and earlier contains a cross-site scripting vulnerability. If an attacker tricks the user to access the product with a specially crafted URL and perform a specific operation, an arbitrary script may be executed on the web browser of the user.

EPSS

Процентиль: 72%
0.00725
Низкий

6.1 Medium

CVSS3

Дефекты

CWE-79

Связанные уязвимости

CVSS3: 6.1
nvd
почти 2 года назад

Pleasanter 1.3.49.0 and earlier contains a cross-site scripting vulnerability. If an attacker tricks the user to access the product with a specially crafted URL and perform a specific operation, an arbitrary script may be executed on the web browser of the user.

EPSS

Процентиль: 72%
0.00725
Низкий

6.1 Medium

CVSS3

Дефекты

CWE-79