Описание
A vulnerability was found in oitcode samarium up to 0.9.6. This impacts an unknown function of the file /dashboard/team of the component Team Image Handler. The manipulation results in cross site scripting. The attack may be launched remotely. The exploit has been made public and could be used.
Ссылки
- ExploitThird Party Advisory
- Permissions RequiredVDB Entry
- Third Party AdvisoryVDB Entry
- Third Party AdvisoryVDB Entry
- ExploitThird Party Advisory
Уязвимые конфигурации
Конфигурация 1Версия до 0.9.6 (включая)
cpe:2.3:a:oitcode:samarium:*:*:*:*:*:*:*:*
EPSS
Процентиль: 7%
0.00026
Низкий
2.4 Low
CVSS3
5.4 Medium
CVSS3
3.3 Low
CVSS2
Дефекты
CWE-79
CWE-79
Связанные уязвимости
CVSS3: 2.4
github
6 месяцев назад
A vulnerability was found in oitcode samarium up to 0.9.6. This impacts an unknown function of the file /dashboard/team of the component Team Image Handler. The manipulation results in cross site scripting. The attack may be launched remotely. The exploit has been made public and could be used.
EPSS
Процентиль: 7%
0.00026
Низкий
2.4 Low
CVSS3
5.4 Medium
CVSS3
3.3 Low
CVSS2
Дефекты
CWE-79
CWE-79