Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-6m8f-gxf8-jq76

Опубликовано: 16 янв. 2026
Источник: github
Github: Не прошло ревью
CVSS4: 8.7
CVSS3: 6.2

Описание

GeoVision GeoWebServer 5.3.3 contains multiple vulnerabilities including local file inclusion, cross-site scripting, and remote code execution through improper input sanitization. Attackers can exploit the WebStrings.srf endpoint by manipulating path traversal and injection parameters to access system files and execute malicious scripts.

GeoVision GeoWebServer 5.3.3 contains multiple vulnerabilities including local file inclusion, cross-site scripting, and remote code execution through improper input sanitization. Attackers can exploit the WebStrings.srf endpoint by manipulating path traversal and injection parameters to access system files and execute malicious scripts.

EPSS

Процентиль: 26%
0.00088
Низкий

8.7 High

CVSS4

6.2 Medium

CVSS3

Дефекты

CWE-22

Связанные уязвимости

CVSS3: 6.2
nvd
23 дня назад

GeoVision GeoWebServer 5.3.3 contains multiple vulnerabilities including local file inclusion, cross-site scripting, and remote code execution through improper input sanitization. Attackers can exploit the WebStrings.srf endpoint by manipulating path traversal and injection parameters to access system files and execute malicious scripts.

EPSS

Процентиль: 26%
0.00088
Низкий

8.7 High

CVSS4

6.2 Medium

CVSS3

Дефекты

CWE-22