Описание
An issue existed in the parsing of URLs. This issue was addressed with improved input validation. This issue is fixed in macOS Server 5.11. Processing a maliciously crafted URL may lead to an open redirect or cross site scripting.
Ссылки
- Vendor Advisory
- Vendor Advisory
Уязвимые конфигурации
Конфигурация 1Версия до 5.11 (исключая)
cpe:2.3:o:apple:macos_server:*:*:*:*:*:*:*:*
EPSS
Процентиль: 41%
0.00192
Низкий
6.1 Medium
CVSS3
5.8 Medium
CVSS2
Дефекты
CWE-79
Связанные уязвимости
github
больше 3 лет назад
An issue existed in the parsing of URLs. This issue was addressed with improved input validation. This issue is fixed in macOS Server 5.11. Processing a maliciously crafted URL may lead to an open redirect or cross site scripting.
EPSS
Процентиль: 41%
0.00192
Низкий
6.1 Medium
CVSS3
5.8 Medium
CVSS2
Дефекты
CWE-79