Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-x4xh-336q-prh9

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

ObjectPlanet Opinio before 7.13 allows reflected XSS via the survey/admin/surveyAdmin.do?action=viewSurveyAdmin query string. (There is also stored XSS if input to survey/admin/*.do is accepted from untrusted users.)

ObjectPlanet Opinio before 7.13 allows reflected XSS via the survey/admin/surveyAdmin.do?action=viewSurveyAdmin query string. (There is also stored XSS if input to survey/admin/*.do is accepted from untrusted users.)

EPSS

Процентиль: 51%
0.00278
Низкий

Дефекты

CWE-79

Связанные уязвимости

CVSS3: 6.1
nvd
больше 4 лет назад

ObjectPlanet Opinio before 7.14 allows reflected XSS via the survey/admin/surveyAdmin.do?action=viewSurveyAdmin query string. (There is also stored XSS if input to survey/admin/*.do is accepted from untrusted users.)

EPSS

Процентиль: 51%
0.00278
Низкий

Дефекты

CWE-79