Логотип exploitDog
bind:CVE-2021-20195
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2021-20195

Количество 4

Количество 4

redhat логотип

CVE-2021-20195

почти 5 лет назад

A flaw was found in keycloak in versions before 13.0.0. A Self Stored XSS attack vector escalating to a complete account takeover is possible due to user-supplied data fields not being properly encoded and Javascript code being used to process the data. The highest threat from this vulnerability is to data confidentiality and integrity as well as system availability.

CVSS3: 8.3
EPSS: Низкий
nvd логотип

CVE-2021-20195

больше 4 лет назад

A flaw was found in keycloak in versions before 13.0.0. A Self Stored XSS attack vector escalating to a complete account takeover is possible due to user-supplied data fields not being properly encoded and Javascript code being used to process the data. The highest threat from this vulnerability is to data confidentiality and integrity as well as system availability.

CVSS3: 9.6
EPSS: Низкий
debian логотип

CVE-2021-20195

больше 4 лет назад

A flaw was found in keycloak in versions before 13.0.0. A Self Stored ...

CVSS3: 9.6
EPSS: Низкий
github логотип

GHSA-q6w2-89hq-hq27

больше 4 лет назад

keycloak Self Stored Cross-site Scripting vulnerability

CVSS3: 9.6
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
redhat логотип
CVE-2021-20195

A flaw was found in keycloak in versions before 13.0.0. A Self Stored XSS attack vector escalating to a complete account takeover is possible due to user-supplied data fields not being properly encoded and Javascript code being used to process the data. The highest threat from this vulnerability is to data confidentiality and integrity as well as system availability.

CVSS3: 8.3
0%
Низкий
почти 5 лет назад
nvd логотип
CVE-2021-20195

A flaw was found in keycloak in versions before 13.0.0. A Self Stored XSS attack vector escalating to a complete account takeover is possible due to user-supplied data fields not being properly encoded and Javascript code being used to process the data. The highest threat from this vulnerability is to data confidentiality and integrity as well as system availability.

CVSS3: 9.6
0%
Низкий
больше 4 лет назад
debian логотип
CVE-2021-20195

A flaw was found in keycloak in versions before 13.0.0. A Self Stored ...

CVSS3: 9.6
0%
Низкий
больше 4 лет назад
github логотип
GHSA-q6w2-89hq-hq27

keycloak Self Stored Cross-site Scripting vulnerability

CVSS3: 9.6
0%
Низкий
больше 4 лет назад

Уязвимостей на страницу