Описание
Cross Site Scripting vulnerability in jizhicms v.2.5.4 allows a remote attacker to obtain sensitive information via a crafted article publication request.
Ссылки
- ExploitThird Party Advisory
- ExploitIssue TrackingThird Party Advisory
- US Government Resource
- ExploitThird Party Advisory
- ExploitIssue TrackingThird Party Advisory
- US Government Resource
Уязвимые конфигурации
Конфигурация 1
cpe:2.3:a:jizhicms:jizhicms:2.5.4:*:*:*:*:*:*:*
EPSS
Процентиль: 80%
0.01328
Низкий
7.3 High
CVSS3
Дефекты
CWE-79
Связанные уязвимости
CVSS3: 7.3
github
почти 2 года назад
Cross Site Scripting vulnerability in jizhicms v.2.5.4 allows a remote attacker to obtain sensitive information via a crafted article publication request.
EPSS
Процентиль: 80%
0.01328
Низкий
7.3 High
CVSS3
Дефекты
CWE-79