Описание
Vulnerability in School ERP Pro+Responsive 1.0 that allows XSS via the username and password parameters in '/index.php'. This vulnerability allows an attacker to partially take control of the victim's browser session.
Уязвимые конфигурации
Конфигурация 1
cpe:2.3:a:arox:school_erp_pro\+responsive:1.0:*:*:*:*:*:*:*
EPSS
Процентиль: 33%
0.0013
Низкий
6.5 Medium
CVSS3
6.1 Medium
CVSS3
Дефекты
CWE-79
Связанные уязвимости
CVSS3: 6.5
github
больше 1 года назад
Vulnerability in School ERP Pro+Responsive 1.0 that allows XSS via the username and password parameters in '/index.php'. This vulnerability allows an attacker to partially take control of the victim's browser session.
EPSS
Процентиль: 33%
0.0013
Низкий
6.5 Medium
CVSS3
6.1 Medium
CVSS3
Дефекты
CWE-79