Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-q3cp-qrxg-9wv4

Опубликовано: 26 авг. 2022
Источник: github
Github: Не прошло ревью
CVSS3: 5.4

Описание

Archer Platform 6.x before 6.11 P3 contain an HTML injection vulnerability. An authenticated remote attacker could potentially exploit this vulnerability by tricking a victim application user to execute malicious code in the context of the web application. 6.10 P4 (6.10.0.4) and 6.11 P2 HF4 (6.11.0.2.4) are also fixed releases.

Archer Platform 6.x before 6.11 P3 contain an HTML injection vulnerability. An authenticated remote attacker could potentially exploit this vulnerability by tricking a victim application user to execute malicious code in the context of the web application. 6.10 P4 (6.10.0.4) and 6.11 P2 HF4 (6.11.0.2.4) are also fixed releases.

EPSS

Процентиль: 48%
0.0025
Низкий

5.4 Medium

CVSS3

Дефекты

CWE-79

Связанные уязвимости

CVSS3: 7.6
nvd
больше 3 лет назад

Archer Platform 6.x before 6.11 P3 contain an HTML injection vulnerability. An authenticated remote attacker could potentially exploit this vulnerability by tricking a victim application user to execute malicious code in the context of the web application. 6.10 P4 (6.10.0.4) and 6.11 P2 HF4 (6.11.0.2.4) are also fixed releases.

EPSS

Процентиль: 48%
0.0025
Низкий

5.4 Medium

CVSS3

Дефекты

CWE-79