Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-62rj-q587-5xq8

Опубликовано: 21 дек. 2024
Источник: github
Github: Не прошло ревью
CVSS3: 6.1

Описание

A reflected cross-site scripting vulnerability in MONITORAPP Application Insight Web Application Firewall (AIWAF) <= 4.1.6 and <=5.0 was identified on the subpage /process_management/process_status.xhr.php. This vulnerability allows an attacker to inject malicious scripts that execute in the context of the victim's session.

A reflected cross-site scripting vulnerability in MONITORAPP Application Insight Web Application Firewall (AIWAF) <= 4.1.6 and <=5.0 was identified on the subpage /process_management/process_status.xhr.php. This vulnerability allows an attacker to inject malicious scripts that execute in the context of the victim's session.

EPSS

Процентиль: 32%
0.00122
Низкий

6.1 Medium

CVSS3

Дефекты

CWE-79

Связанные уязвимости

CVSS3: 6.1
nvd
около 1 года назад

A reflected cross-site scripting vulnerability in MONITORAPP Application Insight Web Application Firewall (AIWAF) <= 4.1.6 and <=5.0 was identified on the subpage `/process_management/process_status.xhr.php`. This vulnerability allows an attacker to inject malicious scripts that execute in the context of the victim's session.

EPSS

Процентиль: 32%
0.00122
Низкий

6.1 Medium

CVSS3

Дефекты

CWE-79