Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-h2j4-cg8h-chp5

Опубликовано: 13 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 9

Описание

Cantemo Portal before 3.2.13, 3.3.x before 3.3.8, and 3.4.x before 3.4.9 has XSS. Leveraging this vulnerability would enable performing actions as users, including administrative users. This could enable account creation and deletion as well as deletion of information contained within the app.

Cantemo Portal before 3.2.13, 3.3.x before 3.3.8, and 3.4.x before 3.4.9 has XSS. Leveraging this vulnerability would enable performing actions as users, including administrative users. This could enable account creation and deletion as well as deletion of information contained within the app.

EPSS

Процентиль: 60%
0.00402
Низкий

9 Critical

CVSS3

Дефекты

CWE-79

Связанные уязвимости

CVSS3: 9
nvd
почти 7 лет назад

Cantemo Portal before 3.2.13, 3.3.x before 3.3.8, and 3.4.x before 3.4.9 has XSS. Leveraging this vulnerability would enable performing actions as users, including administrative users. This could enable account creation and deletion as well as deletion of information contained within the app.

EPSS

Процентиль: 60%
0.00402
Низкий

9 Critical

CVSS3

Дефекты

CWE-79