Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-r66f-f7w5-7r65

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

The /servicedesk/customer/portals resource in Jira Service Desk Server and Data Center before version 4.10.0 allows remote attackers with project administrator privileges to inject arbitrary HTML or JavaScript names via an Cross Site Scripting (XSS) vulnerability by uploading a html file.

The /servicedesk/customer/portals resource in Jira Service Desk Server and Data Center before version 4.10.0 allows remote attackers with project administrator privileges to inject arbitrary HTML or JavaScript names via an Cross Site Scripting (XSS) vulnerability by uploading a html file.

EPSS

Процентиль: 73%
0.0076
Низкий

Дефекты

CWE-79

Связанные уязвимости

CVSS3: 4.8
nvd
больше 5 лет назад

The /servicedesk/customer/portals resource in Jira Service Desk Server and Data Center before version 4.10.0 allows remote attackers with project administrator privileges to inject arbitrary HTML or JavaScript names via an Cross Site Scripting (XSS) vulnerability by uploading a html file.

EPSS

Процентиль: 73%
0.0076
Низкий

Дефекты

CWE-79