Логотип exploitDog
bind: "CVE-2024-9101"
Консоль
Логотип exploitDog

exploitDog

bind: "CVE-2024-9101"

Количество 6

Количество 6

ubuntu логотип

CVE-2024-9101

около 1 года назад

A reflected cross-site scripting (XSS) vulnerability in the 'Entry Chooser' of phpLDAPadmin (version 1.2.1 through the latest version, 1.2.6.7) allows attackers to execute arbitrary JavaScript in the user's browser via the 'element' parameter, which is unsafely passed to the JavaScript 'eval' function. However, exploitation is limited to specific conditions where 'opener' is correctly set.

EPSS: Низкий
nvd логотип

CVE-2024-9101

около 1 года назад

A reflected cross-site scripting (XSS) vulnerability in the 'Entry Chooser' of phpLDAPadmin (version 1.2.1 through the latest version, 1.2.6.7) allows attackers to execute arbitrary JavaScript in the user's browser via the 'element' parameter, which is unsafely passed to the JavaScript 'eval' function. However, exploitation is limited to specific conditions where 'opener' is correctly set.

EPSS: Низкий
debian логотип

CVE-2024-9101

около 1 года назад

A reflected cross-site scripting (XSS) vulnerability in the 'Entry Cho ...

EPSS: Низкий
github логотип

GHSA-6mpf-h5jc-fvrw

около 1 года назад

A reflected cross-site scripting (XSS) vulnerability in the 'Entry Chooser' of phpLDAPadmin (version 1.2.1 through the latest version, 1.2.6.7) allows attackers to execute arbitrary JavaScript in the user's browser via the 'element' parameter, which is unsafely passed to the JavaScript 'eval' function. However, exploitation is limited to specific conditions where 'opener' is correctly set.

EPSS: Низкий
fstec логотип

BDU:2025-16093

около 1 года назад

Уязвимость веб-инструмента администрирования LDAP phpLDAPadmin, позволяющая нарушителю выполнить произвольный код

CVSS3: 5.8
EPSS: Низкий
redos логотип

ROS-20251215-7308

около 1 месяца назад

Уязвимость phpldapadmin

CVSS3: 5.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2024-9101

A reflected cross-site scripting (XSS) vulnerability in the 'Entry Chooser' of phpLDAPadmin (version 1.2.1 through the latest version, 1.2.6.7) allows attackers to execute arbitrary JavaScript in the user's browser via the 'element' parameter, which is unsafely passed to the JavaScript 'eval' function. However, exploitation is limited to specific conditions where 'opener' is correctly set.

0%
Низкий
около 1 года назад
nvd логотип
CVE-2024-9101

A reflected cross-site scripting (XSS) vulnerability in the 'Entry Chooser' of phpLDAPadmin (version 1.2.1 through the latest version, 1.2.6.7) allows attackers to execute arbitrary JavaScript in the user's browser via the 'element' parameter, which is unsafely passed to the JavaScript 'eval' function. However, exploitation is limited to specific conditions where 'opener' is correctly set.

0%
Низкий
около 1 года назад
debian логотип
CVE-2024-9101

A reflected cross-site scripting (XSS) vulnerability in the 'Entry Cho ...

0%
Низкий
около 1 года назад
github логотип
GHSA-6mpf-h5jc-fvrw

A reflected cross-site scripting (XSS) vulnerability in the 'Entry Chooser' of phpLDAPadmin (version 1.2.1 through the latest version, 1.2.6.7) allows attackers to execute arbitrary JavaScript in the user's browser via the 'element' parameter, which is unsafely passed to the JavaScript 'eval' function. However, exploitation is limited to specific conditions where 'opener' is correctly set.

0%
Низкий
около 1 года назад
fstec логотип
BDU:2025-16093

Уязвимость веб-инструмента администрирования LDAP phpLDAPadmin, позволяющая нарушителю выполнить произвольный код

CVSS3: 5.8
0%
Низкий
около 1 года назад
redos логотип
ROS-20251215-7308

Уязвимость phpldapadmin

CVSS3: 5.8
0%
Низкий
около 1 месяца назад

Уязвимостей на страницу