Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-xj2w-7m9r-98q7

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

In Ignite Realtime Openfire 4.5.1 a Stored Cross-site Vulnerability allows an attacker to execute an arbitrary malicious URL via the vulnerable POST parameter searchName", "alias" in the import certificate trusted page

In Ignite Realtime Openfire 4.5.1 a Stored Cross-site Vulnerability allows an attacker to execute an arbitrary malicious URL via the vulnerable POST parameter searchName", "alias" in the import certificate trusted page

EPSS

Процентиль: 47%
0.0062
Низкий

Дефекты

CWE-79

Связанные уязвимости

CVSS3: 6.1
nvd
почти 6 лет назад

In Ignite Realtime Openfire 4.5.1 a Stored Cross-site Vulnerability allows an attacker to execute an arbitrary malicious URL via the vulnerable POST parameter searchName", "alias" in the import certificate trusted page

EPSS

Процентиль: 47%
0.0062
Низкий

Дефекты

CWE-79