Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-vj5q-p268-7mw4

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

A Reflected Cross-Site Scripting (XSS) vulnerability in the index.php login-portal webpage of SourceCodester Stock Management System v1.0 allows remote attackers to harvest login credentials and session cookies when an unauthenticated victim clicks on a malicious URL and enters credentials.

A Reflected Cross-Site Scripting (XSS) vulnerability in the index.php login-portal webpage of SourceCodester Stock Management System v1.0 allows remote attackers to harvest login credentials and session cookies when an unauthenticated victim clicks on a malicious URL and enters credentials.

EPSS

Процентиль: 65%
0.00486
Низкий

Связанные уязвимости

CVSS3: 6.4
nvd
больше 5 лет назад

A Reflected Cross-Site Scripting (XSS) vulnerability in the index.php login-portal webpage of SourceCodester Stock Management System v1.0 allows remote attackers to harvest login credentials and session cookies when an unauthenticated victim clicks on a malicious URL and enters credentials.

EPSS

Процентиль: 65%
0.00486
Низкий