Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-4rjc-5c34-442m

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Versiant LYNX Customer Service Portal (CSP), version 3.5.2, is vulnerable to stored cross-site scripting, which could allow a local, authenticated attacker to insert malicious JavaScript that is stored and displayed to the end user. This could lead to website redirects, session cookie hijacking, or information disclosure.

Versiant LYNX Customer Service Portal (CSP), version 3.5.2, is vulnerable to stored cross-site scripting, which could allow a local, authenticated attacker to insert malicious JavaScript that is stored and displayed to the end user. This could lead to website redirects, session cookie hijacking, or information disclosure.

EPSS

Процентиль: 43%
0.0051
Низкий

Связанные уязвимости

CVSS3: 3.9
nvd
больше 6 лет назад

Versiant LYNX Customer Service Portal (CSP), version 3.5.2, is vulnerable to stored cross-site scripting, which could allow a local, authenticated attacker to insert malicious JavaScript that is stored and displayed to the end user. This could lead to website redirects, session cookie hijacking, or information disclosure.

EPSS

Процентиль: 43%
0.0051
Низкий