Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-qqr3-c8vc-pm7v

Опубликовано: 27 фев. 2024
Источник: github
Github: Не прошло ревью
CVSS3: 3.1

Описание

Stored cross-site scripting (XSS) vulnerability due to missing origin validation in postMessage. The following products are affected: Acronis Cyber Protect 16 (Linux, Windows) before build 37391.

Stored cross-site scripting (XSS) vulnerability due to missing origin validation in postMessage. The following products are affected: Acronis Cyber Protect 16 (Linux, Windows) before build 37391.

EPSS

Процентиль: 65%
0.00501
Низкий

3.1 Low

CVSS3

Дефекты

CWE-79

Связанные уязвимости

CVSS3: 5.4
nvd
почти 2 года назад

Stored cross-site scripting (XSS) vulnerability due to missing origin validation in postMessage. The following products are affected: Acronis Cyber Protect 16 (Linux, Windows) before build 37391.

EPSS

Процентиль: 65%
0.00501
Низкий

3.1 Low

CVSS3

Дефекты

CWE-79