Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-qwhj-q28h-8hg6

Опубликовано: 20 нояб. 2024
Источник: github
Github: Не прошло ревью
CVSS3: 5.4

Описание

Cross-Site Scripting (XSS) vulnerabilities in Anuj Kumar's Client Management System Version 1.2 allow local attackers to inject arbitrary web script or HTML via the search input field parameter to admin search invoice page and client search invoice page.

Cross-Site Scripting (XSS) vulnerabilities in Anuj Kumar's Client Management System Version 1.2 allow local attackers to inject arbitrary web script or HTML via the search input field parameter to admin search invoice page and client search invoice page.

EPSS

Процентиль: 30%
0.00114
Низкий

5.4 Medium

CVSS3

Дефекты

CWE-79

Связанные уязвимости

CVSS3: 5.4
nvd
около 1 года назад

Cross-Site Scripting (XSS) vulnerabilities in Anuj Kumar's Client Management System Version 1.2 allow local attackers to inject arbitrary web script or HTML via the search input field parameter to admin search invoice page and client search invoice page.

EPSS

Процентиль: 30%
0.00114
Низкий

5.4 Medium

CVSS3

Дефекты

CWE-79