Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-4rjc-5c34-442m

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Versiant LYNX Customer Service Portal (CSP), version 3.5.2, is vulnerable to stored cross-site scripting, which could allow a local, authenticated attacker to insert malicious JavaScript that is stored and displayed to the end user. This could lead to website redirects, session cookie hijacking, or information disclosure.

Versiant LYNX Customer Service Portal (CSP), version 3.5.2, is vulnerable to stored cross-site scripting, which could allow a local, authenticated attacker to insert malicious JavaScript that is stored and displayed to the end user. This could lead to website redirects, session cookie hijacking, or information disclosure.

EPSS

Процентиль: 54%
0.00309
Низкий

Связанные уязвимости

CVSS3: 3.9
nvd
почти 6 лет назад

Versiant LYNX Customer Service Portal (CSP), version 3.5.2, is vulnerable to stored cross-site scripting, which could allow a local, authenticated attacker to insert malicious JavaScript that is stored and displayed to the end user. This could lead to website redirects, session cookie hijacking, or information disclosure.

EPSS

Процентиль: 54%
0.00309
Низкий