Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-7g42-fh7c-62xv

Опубликовано: 13 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 4.8

Описание

Perch Content Management System 3.0.3 allows unrestricted file upload (with resultant XSS) via the Asset Title field in conjunction with the Select File field. This is exploitable with a Limited Admin account.

Perch Content Management System 3.0.3 allows unrestricted file upload (with resultant XSS) via the Asset Title field in conjunction with the Select File field. This is exploitable with a Limited Admin account.

EPSS

Процентиль: 44%
0.00219
Низкий

4.8 Medium

CVSS3

Дефекты

CWE-79

Связанные уязвимости

CVSS3: 4.8
nvd
больше 8 лет назад

Perch Content Management System 3.0.3 allows unrestricted file upload (with resultant XSS) via the Asset Title field in conjunction with the Select File field. This is exploitable with a Limited Admin account.

EPSS

Процентиль: 44%
0.00219
Низкий

4.8 Medium

CVSS3

Дефекты

CWE-79