Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-x2x8-2qv7-rqp4

Опубликовано: 14 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 6.1

Описание

Self - Stored XSS exists in ZoneMinder through 1.32.3, allowing an attacker to execute HTML or JavaScript code in the view 'group' as it insecurely prints the 'Group Name' value on the web page without applying any proper filtration.

Self - Stored XSS exists in ZoneMinder through 1.32.3, allowing an attacker to execute HTML or JavaScript code in the view 'group' as it insecurely prints the 'Group Name' value on the web page without applying any proper filtration.

EPSS

Процентиль: 55%
0.00328
Низкий

6.1 Medium

CVSS3

Дефекты

CWE-79

Связанные уязвимости

CVSS3: 6.1
ubuntu
около 7 лет назад

Self - Stored XSS exists in ZoneMinder through 1.32.3, allowing an attacker to execute HTML or JavaScript code in the view 'group' as it insecurely prints the 'Group Name' value on the web page without applying any proper filtration.

CVSS3: 6.1
nvd
около 7 лет назад

Self - Stored XSS exists in ZoneMinder through 1.32.3, allowing an attacker to execute HTML or JavaScript code in the view 'group' as it insecurely prints the 'Group Name' value on the web page without applying any proper filtration.

CVSS3: 6.1
debian
около 7 лет назад

Self - Stored XSS exists in ZoneMinder through 1.32.3, allowing an att ...

EPSS

Процентиль: 55%
0.00328
Низкий

6.1 Medium

CVSS3

Дефекты

CWE-79