Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-mmq5-phxp-hrxq

Опубликовано: 21 фев. 2024
Источник: github
Github: Не прошло ревью
CVSS3: 6.3

Описание

An issue was discovered in Terminalfour 7.4 through 7.4.0004 QP3 and 8 through 8.3.19, and Formbank through 2.1.10-FINAL. Unauthenticated Stored Cross-Site Scripting can occur, with resultant Admin Session Hijacking. The attack vectors are Form Builder and Form Preview.

An issue was discovered in Terminalfour 7.4 through 7.4.0004 QP3 and 8 through 8.3.19, and Formbank through 2.1.10-FINAL. Unauthenticated Stored Cross-Site Scripting can occur, with resultant Admin Session Hijacking. The attack vectors are Form Builder and Form Preview.

EPSS

Процентиль: 51%
0.00276
Низкий

6.3 Medium

CVSS3

Дефекты

CWE-79

Связанные уязвимости

CVSS3: 6.3
nvd
почти 2 года назад

An issue was discovered in Terminalfour 7.4 through 7.4.0004 QP3 and 8 through 8.3.19, and Formbank through 2.1.10-FINAL. Unauthenticated Stored Cross-Site Scripting can occur, with resultant Admin Session Hijacking. The attack vectors are Form Builder and Form Preview.

EPSS

Процентиль: 51%
0.00276
Низкий

6.3 Medium

CVSS3

Дефекты

CWE-79