Логотип exploitDog
bind:CVE-2020-37003
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2020-37003

Количество 2

Количество 2

nvd логотип

CVE-2020-37003

2 месяца назад

Sellacious eCommerce 4.6 contains a persistent cross-site scripting vulnerability in the Manage Your Addresses module that allows attackers to inject malicious scripts. Attackers can exploit multiple address input fields like full name, company, and address to execute persistent script code that can hijack user sessions and manipulate application modules.

CVSS3: 6.4
EPSS: Низкий
github логотип

GHSA-286p-xvv8-3qx5

2 месяца назад

Sellacious eCommerce 4.6 contains a persistent cross-site scripting vulnerability in the Manage Your Addresses module that allows attackers to inject malicious scripts. Attackers can exploit multiple address input fields like full name, company, and address to execute persistent script code that can hijack user sessions and manipulate application modules.

CVSS3: 6.4
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2020-37003

Sellacious eCommerce 4.6 contains a persistent cross-site scripting vulnerability in the Manage Your Addresses module that allows attackers to inject malicious scripts. Attackers can exploit multiple address input fields like full name, company, and address to execute persistent script code that can hijack user sessions and manipulate application modules.

CVSS3: 6.4
0%
Низкий
2 месяца назад
github логотип
GHSA-286p-xvv8-3qx5

Sellacious eCommerce 4.6 contains a persistent cross-site scripting vulnerability in the Manage Your Addresses module that allows attackers to inject malicious scripts. Attackers can exploit multiple address input fields like full name, company, and address to execute persistent script code that can hijack user sessions and manipulate application modules.

CVSS3: 6.4
0%
Низкий
2 месяца назад

Уязвимостей на страницу