Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-xxch-mf4j-qcvj

Опубликовано: 24 мар. 2023
Источник: github
Github: Не прошло ревью
CVSS3: 7.1

Описание

Dino before 0.2.3, 0.3.x before 0.3.2, and 0.4.x before 0.4.2 allows attackers to modify the personal bookmark store via a crafted message. The attacker can change the display of group chats or force a victim to join a group chat; the victim may then be tricked into disclosing sensitive information.

Dino before 0.2.3, 0.3.x before 0.3.2, and 0.4.x before 0.4.2 allows attackers to modify the personal bookmark store via a crafted message. The attacker can change the display of group chats or force a victim to join a group chat; the victim may then be tricked into disclosing sensitive information.

EPSS

Процентиль: 29%
0.00104
Низкий

7.1 High

CVSS3

Дефекты

CWE-639

Связанные уязвимости

CVSS3: 7.1
ubuntu
больше 2 лет назад

Dino before 0.2.3, 0.3.x before 0.3.2, and 0.4.x before 0.4.2 allows attackers to modify the personal bookmark store via a crafted message. The attacker can change the display of group chats or force a victim to join a group chat; the victim may then be tricked into disclosing sensitive information.

CVSS3: 7.1
nvd
больше 2 лет назад

Dino before 0.2.3, 0.3.x before 0.3.2, and 0.4.x before 0.4.2 allows attackers to modify the personal bookmark store via a crafted message. The attacker can change the display of group chats or force a victim to join a group chat; the victim may then be tricked into disclosing sensitive information.

CVSS3: 7.1
debian
больше 2 лет назад

Dino before 0.2.3, 0.3.x before 0.3.2, and 0.4.x before 0.4.2 allows a ...

EPSS

Процентиль: 29%
0.00104
Низкий

7.1 High

CVSS3

Дефекты

CWE-639