Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-qcgv-jc82-m3g3

Опубликовано: 12 дек. 2022
Источник: github
Github: Не прошло ревью
CVSS3: 6.1

Описание

Insufficient processing of user input in WebSoft HCM 2021.2.3.327 allows an unauthenticated attacker to inject arbitrary HTML tags into the page processed by the user's browser, including scripts in the JavaScript programming language, which leads to Reflected XSS.

Insufficient processing of user input in WebSoft HCM 2021.2.3.327 allows an unauthenticated attacker to inject arbitrary HTML tags into the page processed by the user's browser, including scripts in the JavaScript programming language, which leads to Reflected XSS.

EPSS

Процентиль: 84%
0.022
Низкий

6.1 Medium

CVSS3

Дефекты

CWE-79

Связанные уязвимости

CVSS3: 6.1
nvd
около 3 лет назад

Insufficient processing of user input in WebSoft HCM 2021.2.3.327 allows an unauthenticated attacker to inject arbitrary HTML tags into the page processed by the user's browser, including scripts in the JavaScript programming language, which leads to Reflected XSS.

EPSS

Процентиль: 84%
0.022
Низкий

6.1 Medium

CVSS3

Дефекты

CWE-79