Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2016-4807

Опубликовано: 11 янв. 2017
Источник: nvd
CVSS3: 4.8
CVSS2: 3.5
EPSS Низкий

Описание

Web2py versions 2.14.5 and below was affected by Reflected XSS vulnerability, which allows an attacker to perform an XSS attack on logged in user (admin).

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:web2py:web2py:*:*:*:*:*:*:*:*
Версия до 2.14.5 (включая)

EPSS

Процентиль: 61%
0.0041
Низкий

4.8 Medium

CVSS3

3.5 Low

CVSS2

Дефекты

CWE-79

Связанные уязвимости

CVSS3: 4.8
ubuntu
около 9 лет назад

Web2py versions 2.14.5 and below was affected by Reflected XSS vulnerability, which allows an attacker to perform an XSS attack on logged in user (admin).

CVSS3: 4.8
debian
около 9 лет назад

Web2py versions 2.14.5 and below was affected by Reflected XSS vulnera ...

CVSS3: 4.8
github
больше 3 лет назад

Web2py Reflected XSS vulnerability

EPSS

Процентиль: 61%
0.0041
Низкий

4.8 Medium

CVSS3

3.5 Low

CVSS2

Дефекты

CWE-79