Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-grw2-42pw-w79c

Опубликовано: 02 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Multiple cross-site scripting (XSS) vulnerabilities in map.php in LiveZilla 3.1.8.3 allow remote attackers to inject arbitrary web script or HTML via the (1) lat, (2) lng, and (3) zom parameters, which are not properly handled when processed with templates/map.tpl.

Multiple cross-site scripting (XSS) vulnerabilities in map.php in LiveZilla 3.1.8.3 allow remote attackers to inject arbitrary web script or HTML via the (1) lat, (2) lng, and (3) zom parameters, which are not properly handled when processed with templates/map.tpl.

EPSS

Процентиль: 76%
0.00959
Низкий

Дефекты

CWE-79

Связанные уязвимости

nvd
около 16 лет назад

Multiple cross-site scripting (XSS) vulnerabilities in map.php in LiveZilla 3.1.8.3 allow remote attackers to inject arbitrary web script or HTML via the (1) lat, (2) lng, and (3) zom parameters, which are not properly handled when processed with templates/map.tpl.

EPSS

Процентиль: 76%
0.00959
Низкий

Дефекты

CWE-79