Логотип exploitDog
bind:CVE-2010-4823
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2010-4823

Количество 3

Количество 3

nvd логотип

CVE-2010-4823

больше 13 лет назад

Cross-site scripting (XSS) vulnerability in the httpError method in sapphire/core/control/RequestHandler.php in SilverStripe 2.3.x before 2.3.10 and 2.4.x before 2.4.4, when custom error handling is not used, allows remote attackers to inject arbitrary web script or HTML via "missing URL actions."

CVSS2: 4.3
EPSS: Низкий
debian логотип

CVE-2010-4823

больше 13 лет назад

Cross-site scripting (XSS) vulnerability in the httpError method in sa ...

CVSS2: 4.3
EPSS: Низкий
github логотип

GHSA-wgv2-5mf7-qgw9

больше 3 лет назад

Cross-site scripting (XSS) vulnerability in the httpError method in sapphire/core/control/RequestHandler.php in SilverStripe 2.3.x before 2.3.10 and 2.4.x before 2.4.4, when custom error handling is not used, allows remote attackers to inject arbitrary web script or HTML via "missing URL actions."

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2010-4823

Cross-site scripting (XSS) vulnerability in the httpError method in sapphire/core/control/RequestHandler.php in SilverStripe 2.3.x before 2.3.10 and 2.4.x before 2.4.4, when custom error handling is not used, allows remote attackers to inject arbitrary web script or HTML via "missing URL actions."

CVSS2: 4.3
1%
Низкий
больше 13 лет назад
debian логотип
CVE-2010-4823

Cross-site scripting (XSS) vulnerability in the httpError method in sa ...

CVSS2: 4.3
1%
Низкий
больше 13 лет назад
github логотип
GHSA-wgv2-5mf7-qgw9

Cross-site scripting (XSS) vulnerability in the httpError method in sapphire/core/control/RequestHandler.php in SilverStripe 2.3.x before 2.3.10 and 2.4.x before 2.4.4, when custom error handling is not used, allows remote attackers to inject arbitrary web script or HTML via "missing URL actions."

1%
Низкий
больше 3 лет назад

Уязвимостей на страницу