Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2010-3070

Опубликовано: 28 сент. 2010
Источник: nvd
CVSS2: 4.3
EPSS Средний

Описание

Cross-site scripting (XSS) vulnerability in NuSOAP 0.9.5, as used in MantisBT and other products, allows remote attackers to inject arbitrary web script or HTML via the PATH_INFO to an arbitrary PHP script that uses NuSOAP classes.

Ссылки

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:dietrich_ayala:nusoap:0.9.5:*:*:*:*:*:*:*

EPSS

Процентиль: 94%
0.12119
Средний

4.3 Medium

CVSS2

Дефекты

CWE-79

Связанные уязвимости

ubuntu
около 15 лет назад

Cross-site scripting (XSS) vulnerability in NuSOAP 0.9.5, as used in MantisBT and other products, allows remote attackers to inject arbitrary web script or HTML via the PATH_INFO to an arbitrary PHP script that uses NuSOAP classes.

redhat
больше 15 лет назад

Cross-site scripting (XSS) vulnerability in NuSOAP 0.9.5, as used in MantisBT and other products, allows remote attackers to inject arbitrary web script or HTML via the PATH_INFO to an arbitrary PHP script that uses NuSOAP classes.

debian
около 15 лет назад

Cross-site scripting (XSS) vulnerability in NuSOAP 0.9.5, as used in M ...

github
больше 3 лет назад

Cross-site scripting (XSS) vulnerability in NuSOAP 0.9.5, as used in MantisBT and other products, allows remote attackers to inject arbitrary web script or HTML via the PATH_INFO to an arbitrary PHP script that uses NuSOAP classes.

EPSS

Процентиль: 94%
0.12119
Средний

4.3 Medium

CVSS2

Дефекты

CWE-79