Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-pvcp-73cg-6f77

Опубликовано: 17 мая 2022
Источник: github
Github: Прошло ревью
CVSS3: 4.8

Описание

Web2py Reflected XSS vulnerability

Web2py versions 2.14.5 and below was affected by Reflected XSS vulnerability, which allows an attacker to perform an XSS attack on logged in user (admin).

Пакеты

Наименование

web2py

pip
Затронутые версииВерсия исправления

<= 2.14.5

Отсутствует

EPSS

Процентиль: 61%
0.0041
Низкий

4.8 Medium

CVSS3

Дефекты

CWE-79

Связанные уязвимости

CVSS3: 4.8
ubuntu
около 9 лет назад

Web2py versions 2.14.5 and below was affected by Reflected XSS vulnerability, which allows an attacker to perform an XSS attack on logged in user (admin).

CVSS3: 4.8
nvd
около 9 лет назад

Web2py versions 2.14.5 and below was affected by Reflected XSS vulnerability, which allows an attacker to perform an XSS attack on logged in user (admin).

CVSS3: 4.8
debian
около 9 лет назад

Web2py versions 2.14.5 and below was affected by Reflected XSS vulnera ...

EPSS

Процентиль: 61%
0.0041
Низкий

4.8 Medium

CVSS3

Дефекты

CWE-79