Описание
Cross-site scripting (XSS) vulnerability in Request IP form in phpIPAM v1.7.3 allows remote attackers to inject arbitrary web script or HTML via the instructions parameter for the /app/admin/instructions/edit-result.php endpoint.
Ссылки
- Product
- Broken LinkThird Party Advisory
Уязвимые конфигурации
Конфигурация 1
cpe:2.3:a:phpipam:phpipam:1.7.3:*:*:*:*:*:*:*
EPSS
Процентиль: 14%
0.00045
Низкий
6.1 Medium
CVSS3
Дефекты
CWE-79
CWE-79
Связанные уязвимости
CVSS3: 6.1
debian
2 месяца назад
Cross-site scripting (XSS) vulnerability in Request IP form in phpIPAM ...
CVSS3: 6.1
github
2 месяца назад
Cross-site scripting (XSS) vulnerability in Request IP form in phpIPAM v1.7.3 allows remote attackers to inject arbitrary web script or HTML via the instructions parameter for the /app/admin/instructions/edit-result.php endpoint.
EPSS
Процентиль: 14%
0.00045
Низкий
6.1 Medium
CVSS3
Дефекты
CWE-79
CWE-79