Описание
qdPM 9.1 suffers from Cross-site Scripting (XSS) in the search[keywords] parameter.
Ссылки
- ExploitThird Party AdvisoryVDB Entry
- ProductVendor Advisory
- ProductThird Party Advisory
- ExploitThird Party AdvisoryVDB Entry
- ExploitThird Party AdvisoryVDB Entry
- ProductVendor Advisory
- ProductThird Party Advisory
- ExploitThird Party AdvisoryVDB Entry
Уязвимые конфигурации
Конфигурация 1
cpe:2.3:a:qdpm:qdpm:9.1:*:*:*:*:*:*:*
EPSS
Процентиль: 85%
0.02661
Низкий
6.1 Medium
CVSS3
4.3 Medium
CVSS2
Дефекты
CWE-79
Связанные уязвимости
CVSS3: 6.1
github
больше 3 лет назад
qdPM 9.1 suffers from Cross-site Scripting (XSS) in the search[keywords] parameter.
EPSS
Процентиль: 85%
0.02661
Низкий
6.1 Medium
CVSS3
4.3 Medium
CVSS2
Дефекты
CWE-79