Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-wrmm-r226-5wrq

Опубликовано: 10 фев. 2026
Источник: github
Github: Не прошло ревью
CVSS3: 6.1

Описание

The BSP applications allow an unauthenticated user to inject malicious script content via user-controlled URL parameters that are not sufficiently sanitized. When a victim accesses a crafted URL, the injected script is executed in the victim�s browser, leading to a low impact on confidentiality and integrity, and no impact on the availability of the application.

The BSP applications allow an unauthenticated user to inject malicious script content via user-controlled URL parameters that are not sufficiently sanitized. When a victim accesses a crafted URL, the injected script is executed in the victim�s browser, leading to a low impact on confidentiality and integrity, and no impact on the availability of the application.

EPSS

Процентиль: 8%
0.00029
Низкий

6.1 Medium

CVSS3

Дефекты

CWE-601

Связанные уязвимости

CVSS3: 6.1
nvd
3 месяца назад

The BSP applications allow an unauthenticated user to inject malicious script content via user-controlled URL parameters that are not sufficiently sanitized. When a victim accesses a crafted URL, the injected script is executed in the victim�s browser, leading to a low impact on confidentiality and integrity, and no impact on the availability of the application.

EPSS

Процентиль: 8%
0.00029
Низкий

6.1 Medium

CVSS3

Дефекты

CWE-601