Описание
SolarWinds Serv-U before 15.2 is affected by Cross Site Scripting (XSS) via the HTTP Host header.
Ссылки
- Release NotesVendor Advisory
- Not ApplicableThird Party Advisory
- Third Party Advisory
- Permissions RequiredThird Party Advisory
- Release NotesVendor Advisory
- Not ApplicableThird Party Advisory
- Third Party Advisory
- Permissions RequiredThird Party Advisory
Уязвимые конфигурации
Конфигурация 1Версия до 15.2 (исключая)
cpe:2.3:a:solarwinds:serv-u_file_server:*:*:*:*:*:*:*:*
EPSS
Процентиль: 83%
0.01839
Низкий
6.1 Medium
CVSS3
4.3 Medium
CVSS2
Дефекты
CWE-79
Связанные уязвимости
github
больше 3 лет назад
SolarWinds Serv-U before 15.2 is affected by Cross Site Scripting (XSS) via the HTTP Host header.
EPSS
Процентиль: 83%
0.01839
Низкий
6.1 Medium
CVSS3
4.3 Medium
CVSS2
Дефекты
CWE-79