Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2024-28070

Опубликовано: 16 мар. 2024
Источник: nvd
CVSS3: 6.8
EPSS Низкий

Описание

A vulnerability in the legacy chat component of Mitel MiContact Center Business through 10.0.0.4 could allow an unauthenticated attacker to conduct a reflected cross-site scripting (XSS) attack due to insufficient input validation. A successful exploit could allow an attacker to access sensitive information and gain unauthorized access.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:mitel:micontact_center_business:*:*:*:*:*:*:*:*
Версия до 10.0.0.4 (включая)

EPSS

Процентиль: 53%
0.00301
Низкий

6.8 Medium

CVSS3

Дефекты

CWE-79

Связанные уязвимости

CVSS3: 6.8
github
почти 2 года назад

A vulnerability in the legacy chat component of Mitel MiContact Center Business through 10.0.0.4 could allow an unauthenticated attacker to conduct a reflected cross-site scripting (XSS) attack due to insufficient input validation. A successful exploit could allow an attacker to access sensitive information and gain unauthorized access.

EPSS

Процентиль: 53%
0.00301
Низкий

6.8 Medium

CVSS3

Дефекты

CWE-79