Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-cj43-7274-vrw4

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

On versions 15.1.0-15.1.0.1, 15.0.0-15.0.1.2, and 14.1.0-14.1.2.3, in BIG-IP APM portal access, a specially crafted HTTP request can lead to reflected XSS after the BIG-IP APM system rewrites the HTTP response from the untrusted backend server and sends it to the client.

On versions 15.1.0-15.1.0.1, 15.0.0-15.0.1.2, and 14.1.0-14.1.2.3, in BIG-IP APM portal access, a specially crafted HTTP request can lead to reflected XSS after the BIG-IP APM system rewrites the HTTP response from the untrusted backend server and sends it to the client.

EPSS

Процентиль: 37%
0.00157
Низкий

Связанные уязвимости

CVSS3: 5.4
nvd
почти 6 лет назад

On versions 15.1.0-15.1.0.1, 15.0.0-15.0.1.2, and 14.1.0-14.1.2.3, in BIG-IP APM portal access, a specially crafted HTTP request can lead to reflected XSS after the BIG-IP APM system rewrites the HTTP response from the untrusted backend server and sends it to the client.

EPSS

Процентиль: 37%
0.00157
Низкий