Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-jm8h-r9wg-2qjw

Опубликовано: 15 июл. 2024
Источник: github
Github: Не прошло ревью
CVSS4: 6.8
CVSS3: 6.1

Описание

A reflected cross-site scripting (XSS) vulnerability exists in the PAM UI web interface. A remote attacker able to convince a PAM user to click on a specially crafted link to the PAM UI web interface could potentially execute arbitrary client-side code in the context of PAM UI.

A reflected cross-site scripting (XSS) vulnerability exists in the PAM UI web interface. A remote attacker able to convince a PAM user to click on a specially crafted link to the PAM UI web interface could potentially execute arbitrary client-side code in the context of PAM UI.

EPSS

Процентиль: 26%
0.00089
Низкий

6.8 Medium

CVSS4

6.1 Medium

CVSS3

Дефекты

CWE-79

Связанные уязвимости

CVSS3: 6.1
nvd
больше 1 года назад

A reflected cross-site scripting (XSS) vulnerability exists in the PAM UI web interface. A remote attacker able to convince a PAM user to click on a specially crafted link to the PAM UI web interface could potentially execute arbitrary client-side code in the context of PAM UI.

EPSS

Процентиль: 26%
0.00089
Низкий

6.8 Medium

CVSS4

6.1 Medium

CVSS3

Дефекты

CWE-79