Логотип exploitDog
bind:CVE-2018-9163
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2018-9163

Количество 2

Количество 2

nvd логотип

CVE-2018-9163

почти 8 лет назад

A stored Cross-site scripting (XSS) vulnerability in Zoho ManageEngine Recovery Manager Plus before 5.3 (Build 5350) allows remote authenticated users (with Add New Technician permissions) to inject arbitrary web script or HTML via the loginName field to technicianAction.do.

CVSS3: 5.4
EPSS: Низкий
github логотип

GHSA-vq83-9rx8-rq3m

больше 3 лет назад

A stored Cross-site scripting (XSS) vulnerability in Zoho ManageEngine Recovery Manager Plus before 5.3 (Build 5350) allows remote authenticated users (with Add New Technician permissions) to inject arbitrary web script or HTML via the loginName field to technicianAction.do.

CVSS3: 5.4
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2018-9163

A stored Cross-site scripting (XSS) vulnerability in Zoho ManageEngine Recovery Manager Plus before 5.3 (Build 5350) allows remote authenticated users (with Add New Technician permissions) to inject arbitrary web script or HTML via the loginName field to technicianAction.do.

CVSS3: 5.4
2%
Низкий
почти 8 лет назад
github логотип
GHSA-vq83-9rx8-rq3m

A stored Cross-site scripting (XSS) vulnerability in Zoho ManageEngine Recovery Manager Plus before 5.3 (Build 5350) allows remote authenticated users (with Add New Technician permissions) to inject arbitrary web script or HTML via the loginName field to technicianAction.do.

CVSS3: 5.4
2%
Низкий
больше 3 лет назад

Уязвимостей на страницу