Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2024-2078

Опубликовано: 01 мар. 2024
Источник: nvd
CVSS3: 4.6
CVSS3: 6.1
EPSS Низкий

Описание

A Cross-Site Scripting (XSS) vulnerability has been found in HelpDeskZ affecting version 2.0.2 and earlier. This vulnerability could allow an attacker to send a specially crafted JavaScript payload within the email field and partially take control of an authenticated user's browser session.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:helpdeskz:helpdeskz:*:*:*:*:*:*:*:*
Версия до 2.0.2 (включая)

EPSS

Процентиль: 23%
0.00078
Низкий

4.6 Medium

CVSS3

6.1 Medium

CVSS3

Дефекты

CWE-79

Связанные уязвимости

CVSS3: 4.6
github
почти 2 года назад

A Cross-Site Scripting (XSS) vulnerability has been found in HelpDeskZ affecting version 2.0.2 and earlier. This vulnerability could allow an attacker to send a specially crafted JavaScript payload within the email field and partially take control of an authenticated user's browser session.

EPSS

Процентиль: 23%
0.00078
Низкий

4.6 Medium

CVSS3

6.1 Medium

CVSS3

Дефекты

CWE-79