Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-96p5-93ww-4wgg

Опубликовано: 12 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 6.1

Описание

ZTE's ZXCDN product has a reflective XSS vulnerability. The attacker could modify the parameters in the content clearing request url, and when a user clicks the url, an XSS attack will be triggered.

ZTE's ZXCDN product has a reflective XSS vulnerability. The attacker could modify the parameters in the content clearing request url, and when a user clicks the url, an XSS attack will be triggered.

EPSS

Процентиль: 66%
0.00526
Низкий

6.1 Medium

CVSS3

Дефекты

CWE-79

Связанные уязвимости

CVSS3: 6.1
nvd
больше 3 лет назад

ZTE's ZXCDN product has a reflective XSS vulnerability. The attacker could modify the parameters in the content clearing request url, and when a user clicks the url, an XSS attack will be triggered.

EPSS

Процентиль: 66%
0.00526
Низкий

6.1 Medium

CVSS3

Дефекты

CWE-79