Логотип exploitDog
bind:CVE-2024-9101
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2024-9101

Количество 6

Количество 6

ubuntu логотип

CVE-2024-9101

больше 1 года назад

A reflected cross-site scripting (XSS) vulnerability in the 'Entry Chooser' of phpLDAPadmin (version 1.2.1 through the latest version, 1.2.6.7) allows attackers to execute arbitrary JavaScript in the user's browser via the 'element' parameter, which is unsafely passed to the JavaScript 'eval' function. However, exploitation is limited to specific conditions where 'opener' is correctly set.

EPSS: Низкий
nvd логотип

CVE-2024-9101

больше 1 года назад

A reflected cross-site scripting (XSS) vulnerability in the 'Entry Chooser' of phpLDAPadmin (version 1.2.1 through the latest version, 1.2.6.7) allows attackers to execute arbitrary JavaScript in the user's browser via the 'element' parameter, which is unsafely passed to the JavaScript 'eval' function. However, exploitation is limited to specific conditions where 'opener' is correctly set.

EPSS: Низкий
debian логотип

CVE-2024-9101

больше 1 года назад

A reflected cross-site scripting (XSS) vulnerability in the 'Entry Cho ...

EPSS: Низкий
github логотип

GHSA-6mpf-h5jc-fvrw

больше 1 года назад

A reflected cross-site scripting (XSS) vulnerability in the 'Entry Chooser' of phpLDAPadmin (version 1.2.1 through the latest version, 1.2.6.7) allows attackers to execute arbitrary JavaScript in the user's browser via the 'element' parameter, which is unsafely passed to the JavaScript 'eval' function. However, exploitation is limited to specific conditions where 'opener' is correctly set.

EPSS: Низкий
fstec логотип

BDU:2025-16093

больше 1 года назад

Уязвимость веб-инструмента администрирования LDAP phpLDAPadmin, позволяющая нарушителю выполнить произвольный код

CVSS3: 5.8
EPSS: Низкий
redos логотип

ROS-20251215-7308

4 месяца назад

Уязвимость phpldapadmin

CVSS3: 5.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2024-9101

A reflected cross-site scripting (XSS) vulnerability in the 'Entry Chooser' of phpLDAPadmin (version 1.2.1 through the latest version, 1.2.6.7) allows attackers to execute arbitrary JavaScript in the user's browser via the 'element' parameter, which is unsafely passed to the JavaScript 'eval' function. However, exploitation is limited to specific conditions where 'opener' is correctly set.

0%
Низкий
больше 1 года назад
nvd логотип
CVE-2024-9101

A reflected cross-site scripting (XSS) vulnerability in the 'Entry Chooser' of phpLDAPadmin (version 1.2.1 through the latest version, 1.2.6.7) allows attackers to execute arbitrary JavaScript in the user's browser via the 'element' parameter, which is unsafely passed to the JavaScript 'eval' function. However, exploitation is limited to specific conditions where 'opener' is correctly set.

0%
Низкий
больше 1 года назад
debian логотип
CVE-2024-9101

A reflected cross-site scripting (XSS) vulnerability in the 'Entry Cho ...

0%
Низкий
больше 1 года назад
github логотип
GHSA-6mpf-h5jc-fvrw

A reflected cross-site scripting (XSS) vulnerability in the 'Entry Chooser' of phpLDAPadmin (version 1.2.1 through the latest version, 1.2.6.7) allows attackers to execute arbitrary JavaScript in the user's browser via the 'element' parameter, which is unsafely passed to the JavaScript 'eval' function. However, exploitation is limited to specific conditions where 'opener' is correctly set.

0%
Низкий
больше 1 года назад
fstec логотип
BDU:2025-16093

Уязвимость веб-инструмента администрирования LDAP phpLDAPadmin, позволяющая нарушителю выполнить произвольный код

CVSS3: 5.8
0%
Низкий
больше 1 года назад
redos логотип
ROS-20251215-7308

Уязвимость phpldapadmin

CVSS3: 5.8
0%
Низкий
4 месяца назад

Уязвимостей на страницу