Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-fh4h-xf29-c53g

Опубликовано: 23 янв. 2026
Источник: github
Github: Не прошло ревью
CVSS4: 5.7

Описание

A Cross-Site Scripting (XSS) vulnerability was identified in a parameter in Omada Controllers due to improper input sanitization. Exploitation requires advanced conditions, such as network positioning or emulating a trusted entity, and user interaction by an authenticated administrator. If successful, an attacker could execute arbitrary JavaScript in the administrator’s browser, potentially exposing sensitive information and compromising confidentiality.

A Cross-Site Scripting (XSS) vulnerability was identified in a parameter in Omada Controllers due to improper input sanitization. Exploitation requires advanced conditions, such as network positioning or emulating a trusted entity, and user interaction by an authenticated administrator. If successful, an attacker could execute arbitrary JavaScript in the administrator’s browser, potentially exposing sensitive information and compromising confidentiality.

EPSS

Процентиль: 16%
0.00052
Низкий

5.7 Medium

CVSS4

Дефекты

CWE-79

Связанные уязвимости

nvd
17 дней назад

A Cross-Site Scripting (XSS) vulnerability was identified in a parameter in Omada Controllers due to improper input sanitization. Exploitation requires advanced conditions, such as network positioning or emulating a trusted entity, and user interaction by an authenticated administrator. If successful, an attacker could execute arbitrary JavaScript in the administrator’s browser, potentially exposing sensitive information and compromising confidentiality.

EPSS

Процентиль: 16%
0.00052
Низкий

5.7 Medium

CVSS4

Дефекты

CWE-79