Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-f4x7-2w77-444m

Опубликовано: 02 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Cross-site scripting (XSS) vulnerability in the view_queryform function in lib/viewvc.py in ViewVC before 1.0.10, and 1.1.x before 1.1.4, allows remote attackers to inject arbitrary web script or HTML via "user-provided input."

Cross-site scripting (XSS) vulnerability in the view_queryform function in lib/viewvc.py in ViewVC before 1.0.10, and 1.1.x before 1.1.4, allows remote attackers to inject arbitrary web script or HTML via "user-provided input."

EPSS

Процентиль: 49%
0.00256
Низкий

Дефекты

CWE-79

Связанные уязвимости

ubuntu
почти 16 лет назад

Cross-site scripting (XSS) vulnerability in the view_queryform function in lib/viewvc.py in ViewVC before 1.0.10, and 1.1.x before 1.1.4, allows remote attackers to inject arbitrary web script or HTML via "user-provided input."

nvd
почти 16 лет назад

Cross-site scripting (XSS) vulnerability in the view_queryform function in lib/viewvc.py in ViewVC before 1.0.10, and 1.1.x before 1.1.4, allows remote attackers to inject arbitrary web script or HTML via "user-provided input."

debian
почти 16 лет назад

Cross-site scripting (XSS) vulnerability in the view_queryform functio ...

EPSS

Процентиль: 49%
0.00256
Низкий

Дефекты

CWE-79