Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-v3wm-hvwx-j6vw

Опубликовано: 20 янв. 2023
Источник: github
Github: Не прошло ревью
CVSS3: 6.1

Описание

Cross Site Scripting (XSS) vulnerability in craigrodway classroombookings 2.6.4 allows attackers to execute arbitrary code or other unspecified impacts via the input bgcol in file Weeks.php.

Cross Site Scripting (XSS) vulnerability in craigrodway classroombookings 2.6.4 allows attackers to execute arbitrary code or other unspecified impacts via the input bgcol in file Weeks.php.

EPSS

Процентиль: 58%
0.00364
Низкий

6.1 Medium

CVSS3

Дефекты

CWE-79

Связанные уязвимости

CVSS3: 6.1
nvd
около 3 лет назад

Cross Site Scripting (XSS) vulnerability in craigrodway classroombookings 2.6.4 allows attackers to execute arbitrary code or other unspecified impacts via the input bgcol in file Weeks.php.

EPSS

Процентиль: 58%
0.00364
Низкий

6.1 Medium

CVSS3

Дефекты

CWE-79