Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2010-3070

Опубликовано: 31 авг. 2010
Источник: redhat
CVSS2: 5
EPSS Средний

Описание

Cross-site scripting (XSS) vulnerability in NuSOAP 0.9.5, as used in MantisBT and other products, allows remote attackers to inject arbitrary web script or HTML via the PATH_INFO to an arbitrary PHP script that uses NuSOAP classes.

Дополнительная информация

Статус:

Moderate
Дефект:
CWE-79
https://bugzilla.redhat.com/show_bug.cgi?id=629585php-nusoap: XSS vulnerability due improper escaping of URLs

EPSS

Процентиль: 94%
0.12119
Средний

5 Medium

CVSS2

Связанные уязвимости

ubuntu
около 15 лет назад

Cross-site scripting (XSS) vulnerability in NuSOAP 0.9.5, as used in MantisBT and other products, allows remote attackers to inject arbitrary web script or HTML via the PATH_INFO to an arbitrary PHP script that uses NuSOAP classes.

nvd
около 15 лет назад

Cross-site scripting (XSS) vulnerability in NuSOAP 0.9.5, as used in MantisBT and other products, allows remote attackers to inject arbitrary web script or HTML via the PATH_INFO to an arbitrary PHP script that uses NuSOAP classes.

debian
около 15 лет назад

Cross-site scripting (XSS) vulnerability in NuSOAP 0.9.5, as used in M ...

github
больше 3 лет назад

Cross-site scripting (XSS) vulnerability in NuSOAP 0.9.5, as used in MantisBT and other products, allows remote attackers to inject arbitrary web script or HTML via the PATH_INFO to an arbitrary PHP script that uses NuSOAP classes.

EPSS

Процентиль: 94%
0.12119
Средний

5 Medium

CVSS2