Логотип exploitDog
bind:CVE-2023-40281
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2023-40281

Количество 2

Количество 2

nvd логотип

CVE-2023-40281

больше 2 лет назад

EC-CUBE 2.11.0 to 2.17.2-p1 contain a cross-site scripting vulnerability in "mail/template" and "products/product" of Management page. If this vulnerability is exploited, an arbitrary script may be executed on the web browser of the other administrator or the user who accessed the website using the product.

CVSS3: 4.8
EPSS: Низкий
github логотип

GHSA-m7gf-q6fm-2r43

больше 2 лет назад

EC-CUBE 2.11.0 to 2.17.2-p1 contain a cross-site scripting vulnerability in "mail/template" and "products/product" of Management page. If this vulnerability is exploited, an arbitrary script may be executed on the web browser of the other administrator or the user who accessed the website using the product.

CVSS3: 4.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2023-40281

EC-CUBE 2.11.0 to 2.17.2-p1 contain a cross-site scripting vulnerability in "mail/template" and "products/product" of Management page. If this vulnerability is exploited, an arbitrary script may be executed on the web browser of the other administrator or the user who accessed the website using the product.

CVSS3: 4.8
0%
Низкий
больше 2 лет назад
github логотип
GHSA-m7gf-q6fm-2r43

EC-CUBE 2.11.0 to 2.17.2-p1 contain a cross-site scripting vulnerability in "mail/template" and "products/product" of Management page. If this vulnerability is exploited, an arbitrary script may be executed on the web browser of the other administrator or the user who accessed the website using the product.

CVSS3: 4.8
0%
Низкий
больше 2 лет назад

Уязвимостей на страницу