Логотип exploitDog
bind:CVE-2020-6583
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2020-6583

Количество 2

Количество 2

nvd логотип

CVE-2020-6583

около 6 лет назад

BigProf Online Invoicing System (OIS) through 2.6 has XSS that can be leveraged for session hijacking. An attacker can exploit the XSS vulnerability, retrieve the session cookie from the administrator login, and take over the administrator account via the Name field in an Add New Client action.

CVSS3: 6.1
EPSS: Низкий
github логотип

GHSA-3776-639q-72wg

больше 3 лет назад

BigProf Online Invoicing System (OIS) through 2.6 has XSS that can be leveraged for session hijacking. An attacker can exploit the XSS vulnerability, retrieve the session cookie from the administrator login, and take over the administrator account via the Name field in an Add New Client action.

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2020-6583

BigProf Online Invoicing System (OIS) through 2.6 has XSS that can be leveraged for session hijacking. An attacker can exploit the XSS vulnerability, retrieve the session cookie from the administrator login, and take over the administrator account via the Name field in an Add New Client action.

CVSS3: 6.1
0%
Низкий
около 6 лет назад
github логотип
GHSA-3776-639q-72wg

BigProf Online Invoicing System (OIS) through 2.6 has XSS that can be leveraged for session hijacking. An attacker can exploit the XSS vulnerability, retrieve the session cookie from the administrator login, and take over the administrator account via the Name field in an Add New Client action.

0%
Низкий
больше 3 лет назад

Уязвимостей на страницу