Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2008-3782

Опубликовано: 26 авг. 2008
Источник: nvd
CVSS2: 3.5
EPSS Низкий

Описание

Multiple cross-site scripting (XSS) vulnerabilities in admin/index.php in ACG-PTP 1.0.6 allow remote authenticated administrators to inject arbitrary web script or HTML via the (1) Category name field under Advertisement Packages, the (2) Reason field under Credit/Debit Users, and the (3) FAQ question and (4) FAQ answer fields under Add New FAQ Entry.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:discountedscripts:acg_ptp:1.0.6:*:*:*:*:*:*:*

EPSS

Процентиль: 42%
0.00201
Низкий

3.5 Low

CVSS2

Дефекты

CWE-79

Связанные уязвимости

github
почти 4 года назад

Multiple cross-site scripting (XSS) vulnerabilities in admin/index.php in ACG-PTP 1.0.6 allow remote authenticated administrators to inject arbitrary web script or HTML via the (1) Category name field under Advertisement Packages, the (2) Reason field under Credit/Debit Users, and the (3) FAQ question and (4) FAQ answer fields under Add New FAQ Entry.

EPSS

Процентиль: 42%
0.00201
Низкий

3.5 Low

CVSS2

Дефекты

CWE-79