Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-fxvm-p9gp-wpvf

Опубликовано: 19 авг. 2025
Источник: github
Github: Не прошло ревью
CVSS4: 2
CVSS3: 3.5

Описание

A security vulnerability has been detected in Scada-LTS 2.7.8.1. This issue affects some unknown processing of the file view_edit.shtm of the component SVG File Handler. Such manipulation of the argument backgroundImageMP leads to cross site scripting. The attack can be launched remotely. The exploit has been disclosed publicly and may be used.

A security vulnerability has been detected in Scada-LTS 2.7.8.1. This issue affects some unknown processing of the file view_edit.shtm of the component SVG File Handler. Such manipulation of the argument backgroundImageMP leads to cross site scripting. The attack can be launched remotely. The exploit has been disclosed publicly and may be used.

EPSS

Процентиль: 5%
0.00021
Низкий

2 Low

CVSS4

3.5 Low

CVSS3

Дефекты

CWE-79

Связанные уязвимости

CVSS3: 3.5
nvd
6 месяцев назад

A security vulnerability has been detected in Scada-LTS 2.7.8.1. This issue affects some unknown processing of the file view_edit.shtm of the component SVG File Handler. Such manipulation of the argument backgroundImageMP leads to cross site scripting. The attack can be launched remotely. The exploit has been disclosed publicly and may be used.

CVSS3: 3.5
fstec
6 месяцев назад

Уязвимость многоплатформенного веб-решения для создания Scada-систем Scada-LTS, связанная с непринятием мер по защите структуры веб-страницы, позволяющая нарушителю проводить межсайтовые сценарные атаки

EPSS

Процентиль: 5%
0.00021
Низкий

2 Low

CVSS4

3.5 Low

CVSS3

Дефекты

CWE-79