Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-hmp7-w6rh-f63p

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

HCL Connections v5.5, v6.0, and v6.5 are vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session.

HCL Connections v5.5, v6.0, and v6.5 are vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session.

EPSS

Процентиль: 56%
0.00343
Низкий

Связанные уязвимости

CVSS3: 5.4
nvd
почти 6 лет назад

HCL Connections v5.5, v6.0, and v6.5 are vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session.

EPSS

Процентиль: 56%
0.00343
Низкий