Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-qp3g-fwv9-c8fv

Опубликовано: 22 апр. 2022
Источник: github
Github: Не прошло ревью

Описание

Cross-Site Scripting (XSS) in Xinha, as included in the Serendipity package before 1.5.5, allows remote attackers to execute arbitrary code in plugins/ExtendedFileManager/manager.php and plugins/ImageManager/manager.php.

Cross-Site Scripting (XSS) in Xinha, as included in the Serendipity package before 1.5.5, allows remote attackers to execute arbitrary code in plugins/ExtendedFileManager/manager.php and plugins/ImageManager/manager.php.

EPSS

Процентиль: 75%
0.00863
Низкий

Связанные уязвимости

CVSS3: 6.1
ubuntu
около 6 лет назад

Cross-Site Scripting (XSS) in Xinha, as included in the Serendipity package before 1.5.5, allows remote attackers to execute arbitrary code in plugins/ExtendedFileManager/manager.php and plugins/ImageManager/manager.php.

CVSS3: 6.1
nvd
около 6 лет назад

Cross-Site Scripting (XSS) in Xinha, as included in the Serendipity package before 1.5.5, allows remote attackers to execute arbitrary code in plugins/ExtendedFileManager/manager.php and plugins/ImageManager/manager.php.

CVSS3: 6.1
debian
около 6 лет назад

Cross-Site Scripting (XSS) in Xinha, as included in the Serendipity pa ...

EPSS

Процентиль: 75%
0.00863
Низкий