Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-r8f7-hhg3-c763

Опубликовано: 30 апр. 2022
Источник: github
Github: Не прошло ревью

Описание

Cross-site scripting vulnerability (XSS) in the missing template handler in Macromedia ColdFusion MX allows remote attackers to execute arbitrary script as other users by injecting script into the HTTP request for the name of a template, which is not filtered in the resulting 404 error message.

Cross-site scripting vulnerability (XSS) in the missing template handler in Macromedia ColdFusion MX allows remote attackers to execute arbitrary script as other users by injecting script into the HTTP request for the name of a template, which is not filtered in the resulting 404 error message.

EPSS

Процентиль: 95%
0.16341
Средний

Дефекты

CWE-79

Связанные уязвимости

nvd
около 23 лет назад

Cross-site scripting vulnerability (XSS) in the missing template handler in Macromedia ColdFusion MX allows remote attackers to execute arbitrary script as other users by injecting script into the HTTP request for the name of a template, which is not filtered in the resulting 404 error message.

EPSS

Процентиль: 95%
0.16341
Средний

Дефекты

CWE-79