Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-63hq-456x-7wc8

Опубликовано: 29 янв. 2022
Источник: github
Github: Не прошло ревью

Описание

HTML code injection vulnerability in Android Application, Bosch Video Security, version 3.2.3. or earlier, when successfully exploited allows an attacker to inject random HTML code into a component loaded by WebView, thus allowing the Application to display web resources controlled by the attacker.

HTML code injection vulnerability in Android Application, Bosch Video Security, version 3.2.3. or earlier, when successfully exploited allows an attacker to inject random HTML code into a component loaded by WebView, thus allowing the Application to display web resources controlled by the attacker.

EPSS

Процентиль: 48%
0.00251
Низкий

Дефекты

CWE-79

Связанные уязвимости

CVSS3: 6.1
nvd
около 4 лет назад

HTML code injection vulnerability in Android Application, Bosch Video Security, version 3.2.3. or earlier, when successfully exploited allows an attacker to inject random HTML code into a component loaded by WebView, thus allowing the Application to display web resources controlled by the attacker.

EPSS

Процентиль: 48%
0.00251
Низкий

Дефекты

CWE-79