Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2024-5406

Опубликовано: 27 мая 2024
Источник: nvd
CVSS3: 6.3
EPSS Низкий

Описание

A vulnerability had been discovered in WinNMP 19.02 consisting of an XSS attack via index page in from, subject, text and hash parameters. This vulnerability could allow a remote user to send a specially crafted query to an authenticated user and steal their session details.

EPSS

Процентиль: 63%
0.00445
Низкий

6.3 Medium

CVSS3

Дефекты

CWE-79

EPSS

Процентиль: 63%
0.00445
Низкий

6.3 Medium

CVSS3

Дефекты

CWE-79