Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-579m-27vv-2w3h

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Mobile application "Testes de Codigo" v11.3 and prior allows stored XSS by injecting a payload in the "feedback" message field causing it to be stored in the remote database and leading to its execution on client devices when loading the "feedback list", either by accessing the website directly or using the mobile application.

Mobile application "Testes de Codigo" v11.3 and prior allows stored XSS by injecting a payload in the "feedback" message field causing it to be stored in the remote database and leading to its execution on client devices when loading the "feedback list", either by accessing the website directly or using the mobile application.

EPSS

Процентиль: 53%
0.00298
Низкий

Дефекты

CWE-79

Связанные уязвимости

CVSS3: 5.4
nvd
около 5 лет назад

Mobile application "Testes de Codigo" v11.3 and prior allows stored XSS by injecting a payload in the "feedback" message field causing it to be stored in the remote database and leading to its execution on client devices when loading the "feedback list", either by accessing the website directly or using the mobile application.

EPSS

Процентиль: 53%
0.00298
Низкий

Дефекты

CWE-79