Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2018-1000557

Опубликовано: 26 июн. 2018
Источник: ubuntu
Приоритет: negligible
CVSS2: 4.3
CVSS3: 6.1

Описание

OCS Inventory OCS Inventory NG version ocsreports 2.4 contains a Cross Site Scripting (XSS) vulnerability in login form and search functionality that can result in An attacker is able to execute arbitrary (javascript) code within a victims' browser. This attack appear to be exploitable via Victim must open a crafted link to the application. This vulnerability appears to have been fixed in ocsreports 2.4.1.

РелизСтатусПримечание
bionic

ignored

end of standard support, was needs-triage
devel

not-affected

esm-apps/bionic

needs-triage

esm-apps/focal

not-affected

2.5+dfsg1-1
esm-apps/jammy

not-affected

esm-apps/noble

not-affected

esm-apps/xenial

needs-triage

esm-infra-legacy/trusty

DNE

focal

not-affected

2.5+dfsg1-1
groovy

not-affected

Показывать по

Ссылки на источники

4.3 Medium

CVSS2

6.1 Medium

CVSS3

Связанные уязвимости

CVSS3: 6.1
nvd
больше 7 лет назад

OCS Inventory OCS Inventory NG version ocsreports 2.4 contains a Cross Site Scripting (XSS) vulnerability in login form and search functionality that can result in An attacker is able to execute arbitrary (javascript) code within a victims' browser. This attack appear to be exploitable via Victim must open a crafted link to the application. This vulnerability appears to have been fixed in ocsreports 2.4.1.

CVSS3: 6.1
debian
больше 7 лет назад

OCS Inventory OCS Inventory NG version ocsreports 2.4 contains a Cross ...

CVSS3: 6.1
github
больше 3 лет назад

OCS Inventory OCS Inventory NG version ocsreports 2.4 contains a Cross Site Scripting (XSS) vulnerability in login form and search functionality that can result in An attacker is able to execute arbitrary (javascript) code within a victims' browser. This attack appear to be exploitable via Victim must open a crafted link to the application. This vulnerability appears to have been fixed in ocsreports 2.4.1.

4.3 Medium

CVSS2

6.1 Medium

CVSS3