Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-mcfg-q937-rjpr

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

phpscriptsmall.com School College Portal with ERP Script 2.6.1 and earlier is affected by: Cross Site Scripting (XSS). The impact is: Attack administrators and teachers, students and more. The component is: /pro-school/index.php?student/message/send_reply/. The attack vector is: .

phpscriptsmall.com School College Portal with ERP Script 2.6.1 and earlier is affected by: Cross Site Scripting (XSS). The impact is: Attack administrators and teachers, students and more. The component is: /pro-school/index.php?student/message/send_reply/. The attack vector is: .

EPSS

Процентиль: 55%
0.00328
Низкий

Связанные уязвимости

CVSS3: 6.1
nvd
больше 6 лет назад

phpscriptsmall.com School College Portal with ERP Script 2.6.1 and earlier is affected by: Cross Site Scripting (XSS). The impact is: Attack administrators and teachers, students and more. The component is: /pro-school/index.php?student/message/send_reply/. The attack vector is: <img src=x onerror=alert(document.domain) />.

EPSS

Процентиль: 55%
0.00328
Низкий