Логотип exploitDog
bind:CVE-2023-28347
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2023-28347

Количество 3

Количество 3

nvd логотип

CVE-2023-28347

больше 2 лет назад

An issue was discovered in Faronics Insight 10.0.19045 on Windows. It is possible for an attacker to create a proof-of-concept script that functions similarly to a Student Console, providing unauthenticated attackers with the ability to exploit XSS vulnerabilities within the Teacher Console application and achieve remote code execution as NT AUTHORITY/SYSTEM on all connected Student Consoles and the Teacher Console in a Zero Click manner.

CVSS3: 9.6
EPSS: Низкий
github логотип

GHSA-p5w7-76ph-hj4w

больше 2 лет назад

An issue was discovered in Faronics Insight 10.0.19045 on Windows. It is possible for an attacker to create a proof-of-concept script that functions similarly to a Student Console, providing unauthenticated attackers with the ability to exploit XSS vulnerabilities within the Teacher Console application and achieve remote code execution as NT AUTHORITY/SYSTEM on all connected Student Consoles and the Teacher Console in a Zero Click manner.

CVSS3: 9.6
EPSS: Низкий
fstec логотип

BDU:2023-02981

около 3 лет назад

Уязвимость компонента Teacher Console платформы управления компьютерными сетями в образовании Faronics Insight, позволяющая нарушителю осуществлять межсайтовые сценарные атаки

CVSS3: 9.6
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2023-28347

An issue was discovered in Faronics Insight 10.0.19045 on Windows. It is possible for an attacker to create a proof-of-concept script that functions similarly to a Student Console, providing unauthenticated attackers with the ability to exploit XSS vulnerabilities within the Teacher Console application and achieve remote code execution as NT AUTHORITY/SYSTEM on all connected Student Consoles and the Teacher Console in a Zero Click manner.

CVSS3: 9.6
1%
Низкий
больше 2 лет назад
github логотип
GHSA-p5w7-76ph-hj4w

An issue was discovered in Faronics Insight 10.0.19045 on Windows. It is possible for an attacker to create a proof-of-concept script that functions similarly to a Student Console, providing unauthenticated attackers with the ability to exploit XSS vulnerabilities within the Teacher Console application and achieve remote code execution as NT AUTHORITY/SYSTEM on all connected Student Consoles and the Teacher Console in a Zero Click manner.

CVSS3: 9.6
1%
Низкий
больше 2 лет назад
fstec логотип
BDU:2023-02981

Уязвимость компонента Teacher Console платформы управления компьютерными сетями в образовании Faronics Insight, позволяющая нарушителю осуществлять межсайтовые сценарные атаки

CVSS3: 9.6
1%
Низкий
около 3 лет назад

Уязвимостей на страницу