Описание
A vulnerability classified as problematic has been found in code-projects Chat System 1.0. Affected is an unknown function of the file /admin/update_room.php of the component Chat Room Page. The manipulation of the argument name leads to cross site scripting. It is possible to launch the attack remotely.
Ссылки
- Product
- Permissions RequiredVDB Entry
- Third Party AdvisoryVDB Entry
- Third Party AdvisoryVDB Entry
- Product
Уязвимые конфигурации
Конфигурация 1
cpe:2.3:a:code-projects:chat_system:1.0:*:*:*:*:*:*:*
EPSS
Процентиль: 26%
0.00089
Низкий
3.5 Low
CVSS3
4.6 Medium
CVSS3
4 Medium
CVSS2
Дефекты
CWE-79
CWE-79
Связанные уязвимости
CVSS3: 3.5
github
около 1 года назад
A vulnerability classified as problematic has been found in code-projects Chat System 1.0. Affected is an unknown function of the file /admin/update_room.php of the component Chat Room Page. The manipulation of the argument name leads to cross site scripting. It is possible to launch the attack remotely.
EPSS
Процентиль: 26%
0.00089
Низкий
3.5 Low
CVSS3
4.6 Medium
CVSS3
4 Medium
CVSS2
Дефекты
CWE-79
CWE-79