Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-85wf-3fq7-j8h4

Опубликовано: 25 июл. 2024
Источник: github
Github: Не прошло ревью
CVSS4: 6.3
CVSS3: 6.3

Описание

HMS Industrial Networks

Anybus-CompactCom 30 products are vulnerable to a XSS attack caused by the lack of input sanitation checks. As a consequence, it is possible to insert HTML code into input fields and store the HTML code. The stored HTML code will be embedded in the page and executed by host browser the next time the page is loaded, enabling social engineering attacks.

HMS Industrial Networks

Anybus-CompactCom 30 products are vulnerable to a XSS attack caused by the lack of input sanitation checks. As a consequence, it is possible to insert HTML code into input fields and store the HTML code. The stored HTML code will be embedded in the page and executed by host browser the next time the page is loaded, enabling social engineering attacks.

EPSS

Процентиль: 70%
0.00641
Низкий

6.3 Medium

CVSS4

6.3 Medium

CVSS3

Дефекты

CWE-79

Связанные уязвимости

CVSS3: 6.3
nvd
больше 1 года назад

HMS Industrial Networks Anybus-CompactCom 30 products are vulnerable to a XSS attack caused by the lack of input sanitation checks. As a consequence, it is possible to insert HTML code into input fields and store the HTML code. The stored HTML code will be embedded in the page and executed by host browser the next time the page is loaded, enabling social engineering attacks.

EPSS

Процентиль: 70%
0.00641
Низкий

6.3 Medium

CVSS4

6.3 Medium

CVSS3

Дефекты

CWE-79