Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-v44r-mggx-92j8

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Cross-site scripting (XSS) issue in attachment management in Odoo Community 14.0 and earlier and Odoo Enterprise 14.0 and earlier, allows remote attackers to inject arbitrary web script in the browser of a victim via a crafted link.

Cross-site scripting (XSS) issue in attachment management in Odoo Community 14.0 and earlier and Odoo Enterprise 14.0 and earlier, allows remote attackers to inject arbitrary web script in the browser of a victim via a crafted link.

EPSS

Процентиль: 52%
0.00288
Низкий

Дефекты

CWE-79

Связанные уязвимости

CVSS3: 6.1
ubuntu
около 5 лет назад

Cross-site scripting (XSS) issue in attachment management in Odoo Community 14.0 and earlier and Odoo Enterprise 14.0 and earlier, allows remote attackers to inject arbitrary web script in the browser of a victim via a crafted link.

CVSS3: 6.1
nvd
около 5 лет назад

Cross-site scripting (XSS) issue in attachment management in Odoo Community 14.0 and earlier and Odoo Enterprise 14.0 and earlier, allows remote attackers to inject arbitrary web script in the browser of a victim via a crafted link.

CVSS3: 6.1
debian
около 5 лет назад

Cross-site scripting (XSS) issue in attachment management in Odoo Comm ...

EPSS

Процентиль: 52%
0.00288
Низкий

Дефекты

CWE-79