Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-hhfh-44xw-558f

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

A Persistent Cross-Site Scripting (XSS) vulnerability in message_admin.php in Projectworlds Car Rental Management System v1.0 allows unauthenticated remote attackers to harvest an admin login session cookie and steal an admin session upon an admin login.

A Persistent Cross-Site Scripting (XSS) vulnerability in message_admin.php in Projectworlds Car Rental Management System v1.0 allows unauthenticated remote attackers to harvest an admin login session cookie and steal an admin session upon an admin login.

EPSS

Процентиль: 80%
0.01345
Низкий

Связанные уязвимости

CVSS3: 6.1
nvd
больше 5 лет назад

A Persistent Cross-Site Scripting (XSS) vulnerability in message_admin.php in Projectworlds Car Rental Management System v1.0 allows unauthenticated remote attackers to harvest an admin login session cookie and steal an admin session upon an admin login.

EPSS

Процентиль: 80%
0.01345
Низкий