Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2015-7518

Опубликовано: 17 дек. 2015
Источник: nvd
CVSS2: 4.3
EPSS Низкий

Описание

Multiple cross-site scripting (XSS) vulnerabilities in information popups in Foreman before 1.10.0 allow remote attackers to inject arbitrary web script or HTML via (1) global parameters, (2) smart class parameters, or (3) smart variables in the (a) host or (b) hostgroup edit forms.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:theforeman:foreman:*:*:*:*:*:*:*:*
Версия до 1.9.3 (включая)

EPSS

Процентиль: 49%
0.00256
Низкий

4.3 Medium

CVSS2

Дефекты

CWE-79

Связанные уязвимости

redhat
около 10 лет назад

Multiple cross-site scripting (XSS) vulnerabilities in information popups in Foreman before 1.10.0 allow remote attackers to inject arbitrary web script or HTML via (1) global parameters, (2) smart class parameters, or (3) smart variables in the (a) host or (b) hostgroup edit forms.

debian
около 10 лет назад

Multiple cross-site scripting (XSS) vulnerabilities in information pop ...

github
больше 3 лет назад

Multiple cross-site scripting (XSS) vulnerabilities in information popups in Foreman before 1.10.0 allow remote attackers to inject arbitrary web script or HTML via (1) global parameters, (2) smart class parameters, or (3) smart variables in the (a) host or (b) hostgroup edit forms.

EPSS

Процентиль: 49%
0.00256
Низкий

4.3 Medium

CVSS2

Дефекты

CWE-79