Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-9wwc-xv4f-3h57

Опубликовано: 29 апр. 2022
Источник: github
Github: Не прошло ревью

Описание

Serena TeamTrack 6.1.1 allows remote attackers to obtain sensitive information such as user names, versions, and database information, and conduct cross-site scripting (XSS) attacks, via a direct request to tmtrack.dll with modified LoginPage and Template parameters.

Serena TeamTrack 6.1.1 allows remote attackers to obtain sensitive information such as user names, versions, and database information, and conduct cross-site scripting (XSS) attacks, via a direct request to tmtrack.dll with modified LoginPage and Template parameters.

EPSS

Процентиль: 77%
0.01068
Низкий

Связанные уязвимости

nvd
около 21 года назад

Serena TeamTrack 6.1.1 allows remote attackers to obtain sensitive information such as user names, versions, and database information, and conduct cross-site scripting (XSS) attacks, via a direct request to tmtrack.dll with modified LoginPage and Template parameters.

EPSS

Процентиль: 77%
0.01068
Низкий