Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-fg78-v6qm-37gm

Опубликовано: 27 мая 2025
Источник: github
Github: Не прошло ревью
CVSS4: 5.7
CVSS3: 5.2

Описание

A Improper Neutralization of Script-Related HTML Tags in a Web Page (Basic XSS) vulnerability in  spacewalk-java allows execution of arbitrary Javascript code on users machines.This issue affects Container suse/manager/5.0/x86_64/server:5.0.4.7.19.1: from ? before 5.0.24-150600.3.25.1; SUSE Manager Server Module 4.3: from ? before 4.3.85-150400.3.105.3.

A Improper Neutralization of Script-Related HTML Tags in a Web Page (Basic XSS) vulnerability in  spacewalk-java allows execution of arbitrary Javascript code on users machines.This issue affects Container suse/manager/5.0/x86_64/server:5.0.4.7.19.1: from ? before 5.0.24-150600.3.25.1; SUSE Manager Server Module 4.3: from ? before 4.3.85-150400.3.105.3.

EPSS

Процентиль: 16%
0.00051
Низкий

5.7 Medium

CVSS4

5.2 Medium

CVSS3

Дефекты

CWE-80

Связанные уязвимости

CVSS3: 5.2
nvd
9 месяцев назад

A Improper Neutralization of Script-Related HTML Tags in a Web Page (Basic XSS) vulnerability in  spacewalk-java allows execution of arbitrary Javascript code on users machines.This issue affects Container suse/manager/5.0/x86_64/server:5.0.4.7.19.1: from ? before 5.0.24-150600.3.25.1; SUSE Manager Server Module 4.3: from ? before 4.3.85-150400.3.105.3.

EPSS

Процентиль: 16%
0.00051
Низкий

5.7 Medium

CVSS4

5.2 Medium

CVSS3

Дефекты

CWE-80