Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-jv29-2rwp-9x99

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 4.8

Описание

Mahara 1.9 before 1.9.6 and 1.10 before 1.10.4 and 15.04 before 15.04.1 are vulnerable to a site admin or institution admin being able to place HTML and Javascript into an institution display name, which will be displayed to other users unescaped on some Mahara system pages.

Mahara 1.9 before 1.9.6 and 1.10 before 1.10.4 and 15.04 before 15.04.1 are vulnerable to a site admin or institution admin being able to place HTML and Javascript into an institution display name, which will be displayed to other users unescaped on some Mahara system pages.

EPSS

Процентиль: 44%
0.00219
Низкий

4.8 Medium

CVSS3

Дефекты

CWE-79

Связанные уязвимости

CVSS3: 4.8
nvd
больше 8 лет назад

Mahara 1.9 before 1.9.6 and 1.10 before 1.10.4 and 15.04 before 15.04.1 are vulnerable to a site admin or institution admin being able to place HTML and Javascript into an institution display name, which will be displayed to other users unescaped on some Mahara system pages.

CVSS3: 4.8
debian
больше 8 лет назад

Mahara 1.9 before 1.9.6 and 1.10 before 1.10.4 and 15.04 before 15.04. ...

EPSS

Процентиль: 44%
0.00219
Низкий

4.8 Medium

CVSS3

Дефекты

CWE-79