Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2024-52612

Опубликовано: 11 фев. 2025
Источник: nvd
CVSS3: 6.8
CVSS3: 4.8
EPSS Низкий

Описание

SolarWinds Platform is vulnerable to a reflected cross-site scripting vulnerability. This was caused by an insufficient sanitation of input parameters. This vulnerability requires authentication by a high- privileged account to be exploitable.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:solarwinds:solarwinds_platform:*:*:*:*:*:*:*:*
Версия до 2025.1 (исключая)

EPSS

Процентиль: 40%
0.00182
Низкий

6.8 Medium

CVSS3

4.8 Medium

CVSS3

Дефекты

CWE-79

Связанные уязвимости

CVSS3: 6.8
github
12 месяцев назад

SolarWinds Platform is vulnerable to a reflected cross-site scripting vulnerability. This was caused by an insufficient sanitation of input parameters. This vulnerability requires authentication by a high- privileged account to be exploitable.

EPSS

Процентиль: 40%
0.00182
Низкий

6.8 Medium

CVSS3

4.8 Medium

CVSS3

Дефекты

CWE-79