Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-xm7v-wmqf-6g4f

Опубликовано: 30 мар. 2026
Источник: github
Github: Не прошло ревью
CVSS3: 6.1

Описание

Multiple stored cross-site scripting (XSS) vulnerabilities in the Edit feature of the Software Package List page of IngEstate Server v11.14.0 allow attackers to execute arbitrary web scripts or HTML via injecting a crafted payload into the About application, What's news, or Release note parameters.

Multiple stored cross-site scripting (XSS) vulnerabilities in the Edit feature of the Software Package List page of IngEstate Server v11.14.0 allow attackers to execute arbitrary web scripts or HTML via injecting a crafted payload into the About application, What's news, or Release note parameters.

EPSS

Процентиль: 9%
0.00189
Низкий

6.1 Medium

CVSS3

Дефекты

CWE-79

Связанные уязвимости

CVSS3: 6.1
nvd
5 месяцев назад

Multiple stored cross-site scripting (XSS) vulnerabilities in the Edit feature of the Software Package List page of IngEstate Server v11.14.0 allow attackers to execute arbitrary web scripts or HTML via injecting a crafted payload into the About application, What's news, or Release note parameters.

EPSS

Процентиль: 9%
0.00189
Низкий

6.1 Medium

CVSS3

Дефекты

CWE-79