Описание
TeamPass Cross-site Scripting (XSS) vulnerability
TeamPass 2.1.27.36 allows XSS by setting a crafted password for an item in a folder, and then sharing that item with an admin. (The crafted password is exploitable when viewing the change history, or the previous used password field.)
Пакеты
Наименование
nilsteampassnet/teampass
composer
Затронутые версииВерсия исправления
<= 2.1.27.36
Отсутствует
Связанные уязвимости
CVSS3: 5.4
nvd
больше 6 лет назад
TeamPass 2.1.27.36 allows Stored XSS by setting a crafted password for an item in a common available folder or sharing the item with an admin. (The crafted password is exploitable when viewing the change history of the item or tapping on the item.)
CVSS3: 5.4
debian
больше 6 лет назад
TeamPass 2.1.27.36 allows Stored XSS by setting a crafted password for ...