Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-hf39-9g29-9q2w

Опубликовано: 21 дек. 2023
Источник: github
Github: Не прошло ревью
CVSS3: 5.4

Описание

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Uyumsoft Information System and Technologies LioXERP allows Stored XSS.This issue affects LioXERP: before v.146.

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Uyumsoft Information System and Technologies LioXERP allows Stored XSS.This issue affects LioXERP: before v.146.

EPSS

Процентиль: 36%
0.00149
Низкий

5.4 Medium

CVSS3

Дефекты

CWE-79

Связанные уязвимости

CVSS3: 6.1
nvd
около 2 лет назад

An Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Uyumsoft Information System and Technologies' LioXERP allows an authenticated user to execute Stored XSS. This issue affects LioXERP: before v.146.

EPSS

Процентиль: 36%
0.00149
Низкий

5.4 Medium

CVSS3

Дефекты

CWE-79