Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-9qq6-35mf-f783

Опубликовано: 20 дек. 2024
Источник: github
Github: Не прошло ревью
CVSS3: 5.4

Описание

Cross-site scripting vulnerability in Trellix ePolicy Orchestrator prior to ePO 5.10 Service Pack 1 Update 3 allows a remote authenticated attacker to craft requests causing arbitrary content to be injected into the response when accessing the epolicy Orchestrator.

Cross-site scripting vulnerability in Trellix ePolicy Orchestrator prior to ePO 5.10 Service Pack 1 Update 3 allows a remote authenticated attacker to craft requests causing arbitrary content to be injected into the response when accessing the epolicy Orchestrator.

EPSS

Процентиль: 45%
0.00227
Низкий

5.4 Medium

CVSS3

Дефекты

CWE-79

Связанные уязвимости

CVSS3: 5.4
nvd
около 1 года назад

Cross-site scripting vulnerability in Trellix ePolicy Orchestrator prior to ePO 5.10 Service Pack 1 Update 3 allows a remote authenticated attacker to craft requests causing arbitrary content to be injected into the response when accessing the epolicy Orchestrator.

EPSS

Процентиль: 45%
0.00227
Низкий

5.4 Medium

CVSS3

Дефекты

CWE-79