Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2024-2259

Опубликовано: 13 авг. 2024
Источник: nvd
EPSS Низкий

Описание

This vulnerability exists in InstaRISPACS software due to insufficient validation of user supplied input for the loginTo parameter in user login module of the web interface of the application. A remote attacker could exploit this vulnerability by sending a specially crafted input to the vulnerable parameter to perform reflected Cross Site Scripting (XSS) attacks on the targeted system.

EPSS

Процентиль: 63%
0.00455
Низкий

Дефекты

CWE-79

Связанные уязвимости

github
около 1 года назад

This vulnerability exists in InstaRISPACS software due to insufficient validation of user supplied input for the loginTo parameter in user login module of the web interface of the application. A remote attacker could exploit this vulnerability by sending a specially crafted input to the vulnerable parameter to perform reflected Cross Site Scripting (XSS) attacks on the targeted system.

EPSS

Процентиль: 63%
0.00455
Низкий

Дефекты

CWE-79