Логотип exploitDog
bind:CVE-2015-3268
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2015-3268

Количество 2

Количество 2

nvd логотип

CVE-2015-3268

почти 10 лет назад

Cross-site scripting (XSS) vulnerability in the DisplayEntityField.getDescription method in ModelFormField.java in Apache OFBiz before 12.04.06 and 13.07.x before 13.07.03 allows remote attackers to inject arbitrary web script or HTML via the description attribute of a display-entity element.

CVSS3: 6.1
EPSS: Низкий
github логотип

GHSA-mf45-g8hg-p9g4

больше 3 лет назад

Cross-site scripting (XSS) vulnerability in the DisplayEntityField.getDescription method in ModelFormField.java in Apache OFBiz before 12.04.06 and 13.07.x before 13.07.03 allows remote attackers to inject arbitrary web script or HTML via the description attribute of a display-entity element.

CVSS3: 6.1
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2015-3268

Cross-site scripting (XSS) vulnerability in the DisplayEntityField.getDescription method in ModelFormField.java in Apache OFBiz before 12.04.06 and 13.07.x before 13.07.03 allows remote attackers to inject arbitrary web script or HTML via the description attribute of a display-entity element.

CVSS3: 6.1
7%
Низкий
почти 10 лет назад
github логотип
GHSA-mf45-g8hg-p9g4

Cross-site scripting (XSS) vulnerability in the DisplayEntityField.getDescription method in ModelFormField.java in Apache OFBiz before 12.04.06 and 13.07.x before 13.07.03 allows remote attackers to inject arbitrary web script or HTML via the description attribute of a display-entity element.

CVSS3: 6.1
7%
Низкий
больше 3 лет назад

Уязвимостей на страницу