Описание
List Site Pro 2.0 allows remote attackers to hijack user accounts by inserting a "|" (pipe), which is used as a field delimiter, into the bannerurl field.
Ссылки
- Exploit
- Exploit
- Exploit
- Exploit
Уязвимые конфигурации
Конфигурация 1
cpe:2.3:a:list_site_pro:list_site_pro:2.0:*:*:*:*:*:*:*
EPSS
Процентиль: 90%
0.05535
Низкий
4.3 Medium
CVSS2
Дефекты
CWE-20
Связанные уязвимости
github
почти 4 года назад
List Site Pro 2.0 allows remote attackers to hijack user accounts by inserting a "|" (pipe), which is used as a field delimiter, into the bannerurl field.
EPSS
Процентиль: 90%
0.05535
Низкий
4.3 Medium
CVSS2
Дефекты
CWE-20