Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-9p3v-445m-vf8m

Опубликовано: 16 дек. 2021
Источник: github
Github: Не прошло ревью

Описание

An issue was discovered in Socomec REMOTE VIEW PRO 2.0.41.4. Improper validation of input into the username field makes it possible to place a stored XSS payload. This is executed if an administrator views the System Event Log.

An issue was discovered in Socomec REMOTE VIEW PRO 2.0.41.4. Improper validation of input into the username field makes it possible to place a stored XSS payload. This is executed if an administrator views the System Event Log.

EPSS

Процентиль: 53%
0.00302
Низкий

Дефекты

CWE-79

Связанные уязвимости

CVSS3: 5.4
nvd
около 4 лет назад

An issue was discovered in Socomec REMOTE VIEW PRO 2.0.41.4. Improper validation of input into the username field makes it possible to place a stored XSS payload. This is executed if an administrator views the System Event Log.

EPSS

Процентиль: 53%
0.00302
Низкий

Дефекты

CWE-79