Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-w8pw-mmh7-x243

Опубликовано: 01 июн. 2023
Источник: github
Github: Не прошло ревью
CVSS3: 5.4

Описание

In Splunk Enterprise versions below 9.0.5, 8.2.11, and 8.1.14, a Splunk dashboard view lets a low-privileged user exploit a vulnerability in the Bootstrap web framework (CVE-2019-8331) and build a stored cross-site scripting (XSS) payload.

In Splunk Enterprise versions below 9.0.5, 8.2.11, and 8.1.14, a Splunk dashboard view lets a low-privileged user exploit a vulnerability in the Bootstrap web framework (CVE-2019-8331) and build a stored cross-site scripting (XSS) payload.

EPSS

Процентиль: 58%
0.00366
Низкий

5.4 Medium

CVSS3

Дефекты

CWE-79

Связанные уязвимости

CVSS3: 5.4
nvd
больше 2 лет назад

In Splunk Enterprise versions below 9.0.5, 8.2.11, and 8.1.14, a Splunk dashboard view lets a low-privileged user exploit a vulnerability in the Bootstrap web framework (CVE-2019-8331) and build a stored cross-site scripting (XSS) payload.

EPSS

Процентиль: 58%
0.00366
Низкий

5.4 Medium

CVSS3

Дефекты

CWE-79