Логотип exploitDog
bind:CVE-2016-9126
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2016-9126

Количество 2

Количество 2

nvd логотип

CVE-2016-9126

почти 9 лет назад

Revive Adserver before 3.2.3 suffers from persistent XSS. Usernames are not properly escaped when displayed in the audit trail widget of the dashboard upon login, allowing persistent XSS attacks. An authenticated user with enough privileges to create other users could exploit the vulnerability to access the administrator account.

CVSS3: 5.4
EPSS: Низкий
github логотип

GHSA-prj8-5jpv-8374

больше 3 лет назад

Revive Adserver before 3.2.3 suffers from persistent XSS. Usernames are not properly escaped when displayed in the audit trail widget of the dashboard upon login, allowing persistent XSS attacks. An authenticated user with enough privileges to create other users could exploit the vulnerability to access the administrator account.

CVSS3: 5.4
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2016-9126

Revive Adserver before 3.2.3 suffers from persistent XSS. Usernames are not properly escaped when displayed in the audit trail widget of the dashboard upon login, allowing persistent XSS attacks. An authenticated user with enough privileges to create other users could exploit the vulnerability to access the administrator account.

CVSS3: 5.4
0%
Низкий
почти 9 лет назад
github логотип
GHSA-prj8-5jpv-8374

Revive Adserver before 3.2.3 suffers from persistent XSS. Usernames are not properly escaped when displayed in the audit trail widget of the dashboard upon login, allowing persistent XSS attacks. An authenticated user with enough privileges to create other users could exploit the vulnerability to access the administrator account.

CVSS3: 5.4
0%
Низкий
больше 3 лет назад

Уязвимостей на страницу