Логотип exploitDog
bind:CVE-2017-15215
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2017-15215

Количество 4

Количество 4

ubuntu логотип

CVE-2017-15215

больше 8 лет назад

Reflected XSS vulnerability in Shaarli v0.9.1 allows an unauthenticated attacker to inject JavaScript via the searchtags parameter to index.php. If the victim is an administrator, an attacker can (for example) take over the admin session or change global settings or add/delete links. It is also possible to execute JavaScript against unauthenticated users.

CVSS3: 6.1
EPSS: Низкий
nvd логотип

CVE-2017-15215

больше 8 лет назад

Reflected XSS vulnerability in Shaarli v0.9.1 allows an unauthenticated attacker to inject JavaScript via the searchtags parameter to index.php. If the victim is an administrator, an attacker can (for example) take over the admin session or change global settings or add/delete links. It is also possible to execute JavaScript against unauthenticated users.

CVSS3: 6.1
EPSS: Низкий
debian логотип

CVE-2017-15215

больше 8 лет назад

Reflected XSS vulnerability in Shaarli v0.9.1 allows an unauthenticate ...

CVSS3: 6.1
EPSS: Низкий
github логотип

GHSA-jgj8-6rfv-fv92

больше 3 лет назад

Reflected XSS vulnerability in Shaarli v0.9.1 allows an unauthenticated attacker to inject JavaScript via the searchtags parameter to index.php. If the victim is an administrator, an attacker can (for example) take over the admin session or change global settings or add/delete links. It is also possible to execute JavaScript against unauthenticated users.

CVSS3: 6.1
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2017-15215

Reflected XSS vulnerability in Shaarli v0.9.1 allows an unauthenticated attacker to inject JavaScript via the searchtags parameter to index.php. If the victim is an administrator, an attacker can (for example) take over the admin session or change global settings or add/delete links. It is also possible to execute JavaScript against unauthenticated users.

CVSS3: 6.1
1%
Низкий
больше 8 лет назад
nvd логотип
CVE-2017-15215

Reflected XSS vulnerability in Shaarli v0.9.1 allows an unauthenticated attacker to inject JavaScript via the searchtags parameter to index.php. If the victim is an administrator, an attacker can (for example) take over the admin session or change global settings or add/delete links. It is also possible to execute JavaScript against unauthenticated users.

CVSS3: 6.1
1%
Низкий
больше 8 лет назад
debian логотип
CVE-2017-15215

Reflected XSS vulnerability in Shaarli v0.9.1 allows an unauthenticate ...

CVSS3: 6.1
1%
Низкий
больше 8 лет назад
github логотип
GHSA-jgj8-6rfv-fv92

Reflected XSS vulnerability in Shaarli v0.9.1 allows an unauthenticated attacker to inject JavaScript via the searchtags parameter to index.php. If the victim is an administrator, an attacker can (for example) take over the admin session or change global settings or add/delete links. It is also possible to execute JavaScript against unauthenticated users.

CVSS3: 6.1
1%
Низкий
больше 3 лет назад

Уязвимостей на страницу