Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-9q4j-4jmg-xr2j

Опубликовано: 02 авг. 2024
Источник: github
Github: Не прошло ревью
CVSS3: 6.1

Описание

Cosy+ devices running a firmware 21.x below 21.2s10 or a firmware 22.x below 22.1s3 are vulnerable to XSS when displaying the logs due to improper input sanitization. This is fixed in version 21.2s10 and 22.1s3.

Cosy+ devices running a firmware 21.x below 21.2s10 or a firmware 22.x below 22.1s3 are vulnerable to XSS when displaying the logs due to improper input sanitization. This is fixed in version 21.2s10 and 22.1s3.

EPSS

Процентиль: 82%
0.01642
Низкий

6.1 Medium

CVSS3

Дефекты

CWE-79

Связанные уязвимости

CVSS3: 6.1
nvd
больше 1 года назад

Cosy+ devices running a firmware 21.x below 21.2s10 or a firmware 22.x below 22.1s3 are vulnerable to XSS when displaying the logs due to improper input sanitization. This is fixed in version 21.2s10 and 22.1s3.

EPSS

Процентиль: 82%
0.01642
Низкий

6.1 Medium

CVSS3

Дефекты

CWE-79