Логотип exploitDog
bind:CVE-2019-18347
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2019-18347

Количество 5

Количество 5

ubuntu логотип

CVE-2019-18347

около 6 лет назад

A stored XSS issue was discovered in DAViCal through 1.1.8. It does not adequately sanitize output of various fields that can be set by unprivileged users, making it possible for JavaScript stored in those fields to be executed by another (possibly privileged) user. Affected database fields include Username, Display Name, and Email.

CVSS3: 5.4
EPSS: Низкий
nvd логотип

CVE-2019-18347

около 6 лет назад

A stored XSS issue was discovered in DAViCal through 1.1.8. It does not adequately sanitize output of various fields that can be set by unprivileged users, making it possible for JavaScript stored in those fields to be executed by another (possibly privileged) user. Affected database fields include Username, Display Name, and Email.

CVSS3: 5.4
EPSS: Низкий
debian логотип

CVE-2019-18347

около 6 лет назад

A stored XSS issue was discovered in DAViCal through 1.1.8. It does no ...

CVSS3: 5.4
EPSS: Низкий
github логотип

GHSA-92gq-cfj6-292h

больше 3 лет назад

A stored XSS issue was discovered in DAViCal through 1.1.8. It does not adequately sanitize output of various fields that can be set by unprivileged users, making it possible for JavaScript stored in those fields to be executed by another (possibly privileged) user. Affected database fields include Username, Display Name, and Email.

EPSS: Низкий
fstec логотип

BDU:2020-01980

около 6 лет назад

Уязвимость множества элементов сервера обмена календарями DAViCal, связанная с недостатками используемых мер по защите структур веб-страницы, позволяющая нарушителю оказать воздействие на целостность данных

CVSS3: 4.1
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2019-18347

A stored XSS issue was discovered in DAViCal through 1.1.8. It does not adequately sanitize output of various fields that can be set by unprivileged users, making it possible for JavaScript stored in those fields to be executed by another (possibly privileged) user. Affected database fields include Username, Display Name, and Email.

CVSS3: 5.4
1%
Низкий
около 6 лет назад
nvd логотип
CVE-2019-18347

A stored XSS issue was discovered in DAViCal through 1.1.8. It does not adequately sanitize output of various fields that can be set by unprivileged users, making it possible for JavaScript stored in those fields to be executed by another (possibly privileged) user. Affected database fields include Username, Display Name, and Email.

CVSS3: 5.4
1%
Низкий
около 6 лет назад
debian логотип
CVE-2019-18347

A stored XSS issue was discovered in DAViCal through 1.1.8. It does no ...

CVSS3: 5.4
1%
Низкий
около 6 лет назад
github логотип
GHSA-92gq-cfj6-292h

A stored XSS issue was discovered in DAViCal through 1.1.8. It does not adequately sanitize output of various fields that can be set by unprivileged users, making it possible for JavaScript stored in those fields to be executed by another (possibly privileged) user. Affected database fields include Username, Display Name, and Email.

1%
Низкий
больше 3 лет назад
fstec логотип
BDU:2020-01980

Уязвимость множества элементов сервера обмена календарями DAViCal, связанная с недостатками используемых мер по защите структур веб-страницы, позволяющая нарушителю оказать воздействие на целостность данных

CVSS3: 4.1
1%
Низкий
около 6 лет назад

Уязвимостей на страницу