Описание
A cross-site-scripting (XSS) vulnerability exists when Active Directory Federation Services (ADFS) does not properly sanitize user inputs, aka 'Microsoft Active Directory Federation Services Cross-Site Scripting Vulnerability'.
Ссылки
- PatchVendor Advisory
- PatchVendor Advisory
Уязвимые конфигурации
Одно из
EPSS
6.1 Medium
CVSS3
5.4 Medium
CVSS3
4.3 Medium
CVSS2
Дефекты
Связанные уязвимости
Microsoft Active Directory Federation Services Cross-Site Scripting Vulnerability
A cross-site-scripting (XSS) vulnerability exists when Active Directory Federation Services (ADFS) does not properly sanitize user inputs, aka 'Microsoft Active Directory Federation Services Cross-Site Scripting Vulnerability'.
Уязвимость службы Active Directory Federation Services (ADFS) операционных систем Windows, позволяющая нарушителю осуществить межсайтовую сценарную атаку
EPSS
6.1 Medium
CVSS3
5.4 Medium
CVSS3
4.3 Medium
CVSS2