Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2024-5415

Опубликовано: 28 мая 2024
Источник: nvd
CVSS3: 7.1
EPSS Низкий

Описание

A vulnerability have been discovered in PhpMyBackupPro affecting version 2.3 that could allow an attacker to execute XSS through /phpmybackuppro/backup.php, 'comments' and 'db' parameters. This vulnerabilities could allow an attacker to create a specially crafted URL and send it to a victim to retrieve their session details.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:phpmybackuppro:phpmybackuppro:2.3:*:*:*:*:*:*:*

EPSS

Процентиль: 47%
0.00241
Низкий

7.1 High

CVSS3

Дефекты

CWE-79

EPSS

Процентиль: 47%
0.00241
Низкий

7.1 High

CVSS3

Дефекты

CWE-79