Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-pgq5-pvwm-x9hm

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Multiple Cross-Site Scripting (XSS) vulnerabilities exist in Simple Online Planning (SOPlanning) before 1.33 via the document.cookie in nb_mois and mb_ligness and the debug GET parameter to export.php, which allows malicious users to execute arbitrary code.

Multiple Cross-Site Scripting (XSS) vulnerabilities exist in Simple Online Planning (SOPlanning) before 1.33 via the document.cookie in nb_mois and mb_ligness and the debug GET parameter to export.php, which allows malicious users to execute arbitrary code.

EPSS

Процентиль: 71%
0.00659
Низкий

Связанные уязвимости

CVSS3: 5.4
nvd
около 6 лет назад

Multiple Cross-Site Scripting (XSS) vulnerabilities exist in Simple Online Planning (SOPlanning) before 1.33 via the document.cookie in nb_mois and mb_ligness and the debug GET parameter to export.php, which allows malicious users to execute arbitrary code.

EPSS

Процентиль: 71%
0.00659
Низкий