Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-fxjm-4m3m-24xv

Опубликовано: 27 мар. 2025
Источник: github
Github: Не прошло ревью
CVSS3: 5.3

Описание

The affected versions of PowerCMS allow HTTP header injection. This vulnerability can be leveraged to direct the affected product to send email with a tampered URL, such as password reset mail.

The affected versions of PowerCMS allow HTTP header injection. This vulnerability can be leveraged to direct the affected product to send email with a tampered URL, such as password reset mail.

EPSS

Процентиль: 40%
0.00187
Низкий

5.3 Medium

CVSS3

Дефекты

CWE-74

Связанные уязвимости

CVSS3: 5.3
nvd
11 месяцев назад

The affected versions of PowerCMS allow HTTP header injection. This vulnerability can be leveraged to direct the affected product to send email with a tampered URL, such as password reset mail.

EPSS

Процентиль: 40%
0.00187
Низкий

5.3 Medium

CVSS3

Дефекты

CWE-74