Описание
A vulnerability has been found in SialWeb CMS and classified as problematic. This vulnerability affects unknown code of the component Search Handler. The manipulation leads to cross site scripting. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used.
Ссылки
- Vendor Advisory
- ExploitThird Party Advisory
- Vendor Advisory
- ExploitThird Party Advisory
Уязвимые конфигурации
Конфигурация 1
cpe:2.3:a:sialweb:sialweb_cms:-:*:*:*:*:*:*:*
EPSS
Процентиль: 65%
0.00502
Низкий
3.5 Low
CVSS3
5.4 Medium
CVSS3
3.5 Low
CVSS2
Дефекты
CWE-80
CWE-79
Связанные уязвимости
CVSS3: 5.4
github
больше 3 лет назад
A vulnerability has been found in SialWeb CMS and classified as problematic. This vulnerability affects unknown code of the component Search Handler. The manipulation leads to cross site scripting. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used.
EPSS
Процентиль: 65%
0.00502
Низкий
3.5 Low
CVSS3
5.4 Medium
CVSS3
3.5 Low
CVSS2
Дефекты
CWE-80
CWE-79