Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-p7jf-prfr-4v7q

Опубликовано: 13 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 9.4

Описание

An exploitable unauthenticated XML external injection vulnerability was identified in FocalScope v2416. A unauthenticated attacker could submit a specially crafted web request to FocalScope's server that could cause an XXE, and potentially result in data compromise.

An exploitable unauthenticated XML external injection vulnerability was identified in FocalScope v2416. A unauthenticated attacker could submit a specially crafted web request to FocalScope's server that could cause an XXE, and potentially result in data compromise.

EPSS

Процентиль: 83%
0.02045
Низкий

9.4 Critical

CVSS3

Дефекты

CWE-611

Связанные уязвимости

CVSS3: 9.4
nvd
больше 7 лет назад

An exploitable unauthenticated XML external injection vulnerability was identified in FocalScope v2416. A unauthenticated attacker could submit a specially crafted web request to FocalScope's server that could cause an XXE, and potentially result in data compromise.

EPSS

Процентиль: 83%
0.02045
Низкий

9.4 Critical

CVSS3

Дефекты

CWE-611