Логотип exploitDog
bind:CVE-2023-6002
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2023-6002

Количество 2

Количество 2

nvd логотип

CVE-2023-6002

больше 2 лет назад

YugabyteDB is vulnerable to cross site scripting (XSS) via log injection. Writing invalidated user input to log files can allow an unprivileged attacker to forge log entries or inject malicious content into the logs.

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-p56w-h56q-c97x

больше 2 лет назад

YugabyteDB is vulnerable to cross site scripting (XSS) via log injection. Writing invalidated user input to log files can allow an attacker to forge log entries or inject malicious content into the logs.

CVSS3: 7.2
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2023-6002

YugabyteDB is vulnerable to cross site scripting (XSS) via log injection. Writing invalidated user input to log files can allow an unprivileged attacker to forge log entries or inject malicious content into the logs.

CVSS3: 6.5
0%
Низкий
больше 2 лет назад
github логотип
GHSA-p56w-h56q-c97x

YugabyteDB is vulnerable to cross site scripting (XSS) via log injection. Writing invalidated user input to log files can allow an attacker to forge log entries or inject malicious content into the logs.

CVSS3: 7.2
0%
Низкий
больше 2 лет назад

Уязвимостей на страницу