Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-h2m5-pc23-rcvh

Опубликовано: 22 янв. 2022
Источник: github
Github: Не прошло ревью

Описание

Dell EMC AppSync versions 3.9 to 4.3 contain a clickjacking vulnerability in AppSync. A remote unauthenticated attacker could potentially exploit this vulnerability to trick the victim into executing state changing operations.

Dell EMC AppSync versions 3.9 to 4.3 contain a clickjacking vulnerability in AppSync. A remote unauthenticated attacker could potentially exploit this vulnerability to trick the victim into executing state changing operations.

EPSS

Процентиль: 43%
0.00209
Низкий

Дефекты

CWE-1021

Связанные уязвимости

CVSS3: 6.9
nvd
около 4 лет назад

Dell EMC AppSync versions 3.9 to 4.3 contain a clickjacking vulnerability in AppSync. A remote unauthenticated attacker could potentially exploit this vulnerability to trick the victim into executing state changing operations.

EPSS

Процентиль: 43%
0.00209
Низкий

Дефекты

CWE-1021