Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-v57c-67jc-mg6g

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

When SAP Commerce Cloud version 100, hosts a JavaScript storefront, it is vulnerable to MIME sniffing, which, in certain circumstances, could be used to facilitate an XSS attack or malware proliferation.

When SAP Commerce Cloud version 100, hosts a JavaScript storefront, it is vulnerable to MIME sniffing, which, in certain circumstances, could be used to facilitate an XSS attack or malware proliferation.

EPSS

Процентиль: 36%
0.0015
Низкий

Дефекты

CWE-79

Связанные уязвимости

CVSS3: 6.1
nvd
больше 4 лет назад

When SAP Commerce Cloud version 100, hosts a JavaScript storefront, it is vulnerable to MIME sniffing, which, in certain circumstances, could be used to facilitate an XSS attack or malware proliferation.

EPSS

Процентиль: 36%
0.0015
Низкий

Дефекты

CWE-79