Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-xcf3-q63w-pqpj

Опубликовано: 07 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 5.5

Описание

An issue was discovered in the Sametime chat feature in the Notes 11.0 - 11.0.1 FP4 clients. An authenticated Sametime chat user could cause Remote Code Execution on another chat client by sending a specially formatted message through chat containing Javascript code.

An issue was discovered in the Sametime chat feature in the Notes 11.0 - 11.0.1 FP4 clients. An authenticated Sametime chat user could cause Remote Code Execution on another chat client by sending a specially formatted message through chat containing Javascript code.

EPSS

Процентиль: 64%
0.00472
Низкий

5.5 Medium

CVSS3

Дефекты

CWE-732

Связанные уязвимости

CVSS3: 4.6
nvd
почти 4 года назад

An issue was discovered in the Sametime chat feature in the Notes 11.0 - 11.0.1 FP4 clients. An authenticated Sametime chat user could cause Remote Code Execution on another chat client by sending a specially formatted message through chat containing Javascript code.

EPSS

Процентиль: 64%
0.00472
Низкий

5.5 Medium

CVSS3

Дефекты

CWE-732