Описание
Reflected Cross Site Scripting (XSS) in Intermesh BV Group-Office version 6.6.145, allows attackers to gain escalated privileges and gain sensitive information via the GO_LANGUAGE cookie.
Ссылки
- Product
- Broken LinkNot Applicable
- ExploitThird Party Advisory
- Product
- Broken LinkNot Applicable
- ExploitThird Party Advisory
Уязвимые конфигурации
Конфигурация 1
cpe:2.3:a:group-office:group_office:6.6.145:*:*:*:*:*:*:*
EPSS
Процентиль: 51%
0.00279
Низкий
6.1 Medium
CVSS3
Дефекты
CWE-79
CWE-79
Связанные уязвимости
CVSS3: 6.1
github
почти 3 года назад
Reflected Cross Site Scripting (XSS) in Intermesh BV Group-Office version 6.6.145, allows attackers to gain escalated privileges and gain sensitive information via the GO_LANGUAGE cookie.
EPSS
Процентиль: 51%
0.00279
Низкий
6.1 Medium
CVSS3
Дефекты
CWE-79
CWE-79