Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-jppg-7w9m-f7w3

Опубликовано: 13 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 4.8

Описание

Peel shopping peel-shopping_9_1_0 version contains a Cross Site Scripting (XSS) vulnerability that can result in an authenticated user injecting java script code in the "Site Name EN" parameter. This attack appears to be exploitable if the malicious user has access to the administration account.

Peel shopping peel-shopping_9_1_0 version contains a Cross Site Scripting (XSS) vulnerability that can result in an authenticated user injecting java script code in the "Site Name EN" parameter. This attack appears to be exploitable if the malicious user has access to the administration account.

EPSS

Процентиль: 58%
0.00366
Низкий

4.8 Medium

CVSS3

Дефекты

CWE-79

Связанные уязвимости

CVSS3: 4.8
nvd
около 7 лет назад

Peel shopping peel-shopping_9_1_0 version contains a Cross Site Scripting (XSS) vulnerability that can result in an authenticated user injecting java script code in the "Site Name EN" parameter. This attack appears to be exploitable if the malicious user has access to the administration account.

EPSS

Процентиль: 58%
0.00366
Низкий

4.8 Medium

CVSS3

Дефекты

CWE-79