Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2024-5405

Опубликовано: 27 мая 2024
Источник: nvd
CVSS3: 6.3
EPSS Низкий

Описание

A vulnerability had been discovered in WinNMP 19.02 consisting of an XSS attack via /tools/redis.php page in the k, hash, key and p parameters. This vulnerability could allow a remote user to submit a specially crafted JavaScript payload for an authenticated user to retrieve their session details.

EPSS

Процентиль: 63%
0.00445
Низкий

6.3 Medium

CVSS3

Дефекты

CWE-79

EPSS

Процентиль: 63%
0.00445
Низкий

6.3 Medium

CVSS3

Дефекты

CWE-79