Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-x79f-p7c2-c42g

Опубликовано: 29 апр. 2022
Источник: github
Github: Не прошло ревью

Описание

Cross-site scripting (XSS) vulnerability in Bugzilla before 2.18, including 2.16.x before 2.16.11, allows remote attackers to inject arbitrary HTML and web script via forced error messages, as demonstrated using the action parameter.

Cross-site scripting (XSS) vulnerability in Bugzilla before 2.18, including 2.16.x before 2.16.11, allows remote attackers to inject arbitrary HTML and web script via forced error messages, as demonstrated using the action parameter.

EPSS

Процентиль: 68%
0.00572
Низкий

Связанные уязвимости

ubuntu
около 21 года назад

Cross-site scripting (XSS) vulnerability in Bugzilla before 2.18, including 2.16.x before 2.16.11, allows remote attackers to inject arbitrary HTML and web script via forced error messages, as demonstrated using the action parameter.

nvd
около 21 года назад

Cross-site scripting (XSS) vulnerability in Bugzilla before 2.18, including 2.16.x before 2.16.11, allows remote attackers to inject arbitrary HTML and web script via forced error messages, as demonstrated using the action parameter.

debian
около 21 года назад

Cross-site scripting (XSS) vulnerability in Bugzilla before 2.18, incl ...

EPSS

Процентиль: 68%
0.00572
Низкий