Логотип exploitDog
bind:CVE-2019-25280
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2019-25280

Количество 2

Количество 2

nvd логотип

CVE-2019-25280

около 1 месяца назад

Yahei-PHP Prober 0.4.7 contains a remote HTML injection vulnerability that allows attackers to execute arbitrary HTML code through the 'speed' GET parameter. Attackers can inject malicious HTML code in the 'speed' parameter of prober.php to trigger cross-site scripting in user browser sessions.

CVSS3: 6.1
EPSS: Низкий
github логотип

GHSA-mmmw-7m5w-3rc3

около 1 месяца назад

Yahei-PHP Prober 0.4.7 contains a remote HTML injection vulnerability that allows attackers to execute arbitrary HTML code through the 'speed' GET parameter. Attackers can inject malicious HTML code in the 'speed' parameter of prober.php to trigger cross-site scripting in user browser sessions.

CVSS3: 6.1
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2019-25280

Yahei-PHP Prober 0.4.7 contains a remote HTML injection vulnerability that allows attackers to execute arbitrary HTML code through the 'speed' GET parameter. Attackers can inject malicious HTML code in the 'speed' parameter of prober.php to trigger cross-site scripting in user browser sessions.

CVSS3: 6.1
0%
Низкий
около 1 месяца назад
github логотип
GHSA-mmmw-7m5w-3rc3

Yahei-PHP Prober 0.4.7 contains a remote HTML injection vulnerability that allows attackers to execute arbitrary HTML code through the 'speed' GET parameter. Attackers can inject malicious HTML code in the 'speed' parameter of prober.php to trigger cross-site scripting in user browser sessions.

CVSS3: 6.1
0%
Низкий
около 1 месяца назад

Уязвимостей на страницу