Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-qc9w-ffg5-hm26

Опубликовано: 20 авг. 2025
Источник: github
Github: Не прошло ревью
CVSS4: 9.3

Описание

Prism Central versions prior to 2024.3.1 are vulnerable to a stored cross-site scripting attack via the Events component, allowing an attacker to hijack a victim user’s session and perform actions in their security context.

Prism Central versions prior to 2024.3.1 are vulnerable to a stored cross-site scripting attack via the Events component, allowing an attacker to hijack a victim user’s session and perform actions in their security context.

EPSS

Процентиль: 17%
0.00055
Низкий

9.3 Critical

CVSS4

Дефекты

CWE-79

Связанные уязвимости

nvd
6 месяцев назад

Prism Central versions prior to 2024.3.1 are vulnerable to a stored cross-site scripting attack via the Events component, allowing an attacker to hijack a victim user’s session and perform actions in their security context.

EPSS

Процентиль: 17%
0.00055
Низкий

9.3 Critical

CVSS4

Дефекты

CWE-79