Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-jcrg-2j89-2gj6

Опубликовано: 23 дек. 2021
Источник: github
Github: Не прошло ревью

Описание

DIAEnergie Version 1.7.5 and prior is vulnerable to a reflected cross-site scripting attack through error pages that are returned by “.NET Request.QueryString”.

DIAEnergie Version 1.7.5 and prior is vulnerable to a reflected cross-site scripting attack through error pages that are returned by “.NET Request.QueryString”.

EPSS

Процентиль: 37%
0.00156
Низкий

Дефекты

CWE-79

Связанные уязвимости

CVSS3: 7.5
nvd
около 4 лет назад

DIAEnergie Version 1.7.5 and prior is vulnerable to a reflected cross-site scripting attack through error pages that are returned by “.NET Request.QueryString”.

EPSS

Процентиль: 37%
0.00156
Низкий

Дефекты

CWE-79