Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-hx32-r7rm-mpq4

Опубликовано: 30 дек. 2024
Источник: github
Github: Не прошло ревью
CVSS4: 5.1
CVSS3: 2.7

Описание

A vulnerability classified as problematic was found in Antabot White-Jotter up to 0.2.2. Affected by this vulnerability is an unknown functionality of the file /admin/content/editor of the component Article Editor. The manipulation of the argument articleCover leads to server-side request forgery. The attack can be launched remotely. The exploit has been disclosed to the public and may be used.

A vulnerability classified as problematic was found in Antabot White-Jotter up to 0.2.2. Affected by this vulnerability is an unknown functionality of the file /admin/content/editor of the component Article Editor. The manipulation of the argument articleCover leads to server-side request forgery. The attack can be launched remotely. The exploit has been disclosed to the public and may be used.

EPSS

Процентиль: 24%
0.00082
Низкий

5.1 Medium

CVSS4

2.7 Low

CVSS3

Дефекты

CWE-918

Связанные уязвимости

CVSS3: 2.7
nvd
около 1 года назад

A vulnerability classified as problematic was found in Antabot White-Jotter up to 0.2.2. Affected by this vulnerability is an unknown functionality of the file /admin/content/editor of the component Article Editor. The manipulation of the argument articleCover leads to server-side request forgery. The attack can be launched remotely. The exploit has been disclosed to the public and may be used.

EPSS

Процентиль: 24%
0.00082
Низкий

5.1 Medium

CVSS4

2.7 Low

CVSS3

Дефекты

CWE-918