Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-m38f-mjwg-h5rw

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

eonweb in EyesOfNetwork before 5.3-7 does not properly escape the username on the /module/admin_logs page, which might allow pre-authentication stored XSS during login/logout logs recording.

eonweb in EyesOfNetwork before 5.3-7 does not properly escape the username on the /module/admin_logs page, which might allow pre-authentication stored XSS during login/logout logs recording.

EPSS

Процентиль: 60%
0.00391
Низкий

Связанные уязвимости

CVSS3: 6.1
nvd
больше 5 лет назад

eonweb in EyesOfNetwork before 5.3-7 does not properly escape the username on the /module/admin_logs page, which might allow pre-authentication stored XSS during login/logout logs recording.

EPSS

Процентиль: 60%
0.00391
Низкий