Описание
Matrix42 Workspace Management 9.1.2.2765 and below allows stored XSS via unfiltered description parameters, as demonstrated by the comment field of a special order for individual software.
Ссылки
- ExploitThird Party AdvisoryVDB Entry
- ExploitMailing ListThird Party Advisory
- ExploitThird Party AdvisoryVDB Entry
- ExploitMailing ListThird Party Advisory
Уязвимые конфигурации
Конфигурация 1Версия до 9.1.2.2765 (включая)
cpe:2.3:a:matrix42:workspace_management:*:*:*:*:*:*:*:*
EPSS
Процентиль: 53%
0.00305
Низкий
5.4 Medium
CVSS3
3.5 Low
CVSS2
Дефекты
CWE-79
Связанные уязвимости
github
больше 3 лет назад
Matrix42 Workspace Management 9.1.2.2765 and below allows stored XSS via unfiltered description parameters, as demonstrated by the comment field of a special order for individual software.
EPSS
Процентиль: 53%
0.00305
Низкий
5.4 Medium
CVSS3
3.5 Low
CVSS2
Дефекты
CWE-79