Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2019-7551

Опубликовано: 10 апр. 2019
Источник: nvd
CVSS3: 9
CVSS2: 6
EPSS Низкий

Описание

Cantemo Portal before 3.2.13, 3.3.x before 3.3.8, and 3.4.x before 3.4.9 has XSS. Leveraging this vulnerability would enable performing actions as users, including administrative users. This could enable account creation and deletion as well as deletion of information contained within the app.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:cantemo:portal:*:*:*:*:*:*:*:*
Версия до 3.2.13 (исключая)
cpe:2.3:a:cantemo:portal:*:*:*:*:*:*:*:*
Версия от 3.3.0 (включая) до 3.3.8 (исключая)
cpe:2.3:a:cantemo:portal:*:*:*:*:*:*:*:*
Версия от 3.4.0 (включая) до 3.4.9 (исключая)

EPSS

Процентиль: 60%
0.00402
Низкий

9 Critical

CVSS3

6 Medium

CVSS2

Дефекты

CWE-79

Связанные уязвимости

CVSS3: 9
github
больше 3 лет назад

Cantemo Portal before 3.2.13, 3.3.x before 3.3.8, and 3.4.x before 3.4.9 has XSS. Leveraging this vulnerability would enable performing actions as users, including administrative users. This could enable account creation and deletion as well as deletion of information contained within the app.

EPSS

Процентиль: 60%
0.00402
Низкий

9 Critical

CVSS3

6 Medium

CVSS2

Дефекты

CWE-79