Логотип exploitDog
bind:CVE-2022-28449
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2022-28449

Количество 2

Количество 2

nvd логотип

CVE-2022-28449

почти 4 года назад

nopCommerce 4.50.1 is vulnerable to Cross Site Scripting (XSS). At Apply for vendor account feature, an attacker can upload an arbitrary file to the system.

CVSS3: 6.1
EPSS: Низкий
github логотип

GHSA-rv49-vc49-4rpp

почти 4 года назад

nopCommerce 4.50.1 is vulnerable to Cross Site Scripting (XSS). At Apply for vendor account feature, an attacker can upload an arbitrary file to the system.

CVSS3: 6.1
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2022-28449

nopCommerce 4.50.1 is vulnerable to Cross Site Scripting (XSS). At Apply for vendor account feature, an attacker can upload an arbitrary file to the system.

CVSS3: 6.1
0%
Низкий
почти 4 года назад
github логотип
GHSA-rv49-vc49-4rpp

nopCommerce 4.50.1 is vulnerable to Cross Site Scripting (XSS). At Apply for vendor account feature, an attacker can upload an arbitrary file to the system.

CVSS3: 6.1
0%
Низкий
почти 4 года назад

Уязвимостей на страницу