Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2024-29183

Опубликовано: 19 апр. 2024
Источник: nvd
CVSS3: 6.1
EPSS Низкий

Описание

OpenRASP is a RASP solution that directly integrates its protection engine into the application server by instrumentation. There exists a reflected XSS in the /login page due to a reflection of the redirect parameter. This allows an attacker to execute arbitrary javascript with the permissions of a user after the user logins with their account.

EPSS

Процентиль: 22%
0.00074
Низкий

6.1 Medium

CVSS3

Дефекты

CWE-79

EPSS

Процентиль: 22%
0.00074
Низкий

6.1 Medium

CVSS3

Дефекты

CWE-79