Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-ggp5-cmc4-x9q4

Опубликовано: 14 апр. 2025
Источник: github
Github: Не прошло ревью
CVSS4: 8.7

Описание

Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in SicommNet BASEC on SaaS allows Reflected XSS, XSS Through HTTP Query Strings, Rendering of Arbitrary HTML and alternation of CSS Styles This issue affects BASEC: from 14 Dec 2021.

Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in SicommNet BASEC on SaaS allows Reflected XSS, XSS Through HTTP Query Strings, Rendering of Arbitrary HTML and alternation of CSS Styles This issue affects BASEC: from 14 Dec 2021.

EPSS

Процентиль: 26%
0.00091
Низкий

8.7 High

CVSS4

Дефекты

CWE-79

Связанные уязвимости

nvd
10 месяцев назад

Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in SicommNet BASEC on SaaS allows Reflected XSS, XSS Through HTTP Query Strings, Rendering of Arbitrary HTML and alternation of CSS Styles This issue affects BASEC: from 14 Dec 2021.

EPSS

Процентиль: 26%
0.00091
Низкий

8.7 High

CVSS4

Дефекты

CWE-79