Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-f92p-f8r2-c87q

Опубликовано: 03 нояб. 2022
Источник: github
Github: Прошло ревью
CVSS3: 6.1

Описание

Tribal Systems Zenario CMS vulnerable to Cross-site Scripting

A vulnerability has been found in Tribal Systems Zenario CMS prior to version 8.5.51340. Affected by this issue is some unknown functionality of the file admin_organizer.js of the component Error Log Module. The manipulation leads to cross site scripting. The attack may be launched remotely. The issue is patched in version 8.5.51340.

Пакеты

Наименование

tribalsystems/zenario

composer
Затронутые версииВерсия исправления

< 8.5.51340

8.5.51340

EPSS

Процентиль: 46%
0.00233
Низкий

6.1 Medium

CVSS3

Дефекты

CWE-79

Связанные уязвимости

CVSS3: 3.5
nvd
больше 3 лет назад

A vulnerability, which was classified as problematic, has been found in Tribal Systems Zenario CMS. Affected by this issue is some unknown functionality of the file admin_organizer.js of the component Error Log Module. The manipulation leads to cross site scripting. The attack may be launched remotely. The name of the patch is dfd0afacb26c3682a847bea7b49ea440b63f3baa. It is recommended to apply a patch to fix this issue. The identifier of this vulnerability is VDB-212816.

EPSS

Процентиль: 46%
0.00233
Низкий

6.1 Medium

CVSS3

Дефекты

CWE-79