Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-v882-2957-9fw8

Опубликовано: 03 июн. 2022
Источник: github
Github: Не прошло ревью
CVSS3: 4.8

Описание

A vulnerability was found in SourceCodester Product Show Room Site 1.0. It has been declared as problematic. This vulnerability affects p=contact. The manipulation of the Message textbox with the input leads to cross site scripting. The attack can be initiated remotely but requires authentication. Exploit details have been disclosed to the public.

A vulnerability was found in SourceCodester Product Show Room Site 1.0. It has been declared as problematic. This vulnerability affects p=contact. The manipulation of the Message textbox with the input leads to cross site scripting. The attack can be initiated remotely but requires authentication. Exploit details have been disclosed to the public.

EPSS

Процентиль: 40%
0.00184
Низкий

4.8 Medium

CVSS3

Дефекты

CWE-79

Связанные уязвимости

CVSS3: 3.5
nvd
больше 3 лет назад

A vulnerability was found in SourceCodester Product Show Room Site 1.0. It has been declared as problematic. This vulnerability affects p=contact. The manipulation of the Message textbox with the input <script>alert(1)</script> leads to cross site scripting. The attack can be initiated remotely but requires authentication. Exploit details have been disclosed to the public.

EPSS

Процентиль: 40%
0.00184
Низкий

4.8 Medium

CVSS3

Дефекты

CWE-79