Логотип exploitDog
bind:CVE-2016-6127
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2016-6127

Количество 4

Количество 4

ubuntu логотип

CVE-2016-6127

больше 8 лет назад

Cross-site scripting (XSS) vulnerability in Request Tracker (RT) 4.x before 4.0.25, 4.2.x before 4.2.14, and 4.4.x before 4.4.2, when the AlwaysDownloadAttachments config setting is not in use, allows remote attackers to inject arbitrary web script or HTML via a file upload with an unspecified content type.

CVSS3: 6.1
EPSS: Низкий
nvd логотип

CVE-2016-6127

больше 8 лет назад

Cross-site scripting (XSS) vulnerability in Request Tracker (RT) 4.x before 4.0.25, 4.2.x before 4.2.14, and 4.4.x before 4.4.2, when the AlwaysDownloadAttachments config setting is not in use, allows remote attackers to inject arbitrary web script or HTML via a file upload with an unspecified content type.

CVSS3: 6.1
EPSS: Низкий
debian логотип

CVE-2016-6127

больше 8 лет назад

Cross-site scripting (XSS) vulnerability in Request Tracker (RT) 4.x b ...

CVSS3: 6.1
EPSS: Низкий
github логотип

GHSA-57pq-pp54-cgmc

больше 3 лет назад

Cross-site scripting (XSS) vulnerability in Request Tracker (RT) 4.x before 4.0.25, 4.2.x before 4.2.14, and 4.4.x before 4.4.2, when the AlwaysDownloadAttachments config setting is not in use, allows remote attackers to inject arbitrary web script or HTML via a file upload with an unspecified content type.

CVSS3: 6.1
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2016-6127

Cross-site scripting (XSS) vulnerability in Request Tracker (RT) 4.x before 4.0.25, 4.2.x before 4.2.14, and 4.4.x before 4.4.2, when the AlwaysDownloadAttachments config setting is not in use, allows remote attackers to inject arbitrary web script or HTML via a file upload with an unspecified content type.

CVSS3: 6.1
0%
Низкий
больше 8 лет назад
nvd логотип
CVE-2016-6127

Cross-site scripting (XSS) vulnerability in Request Tracker (RT) 4.x before 4.0.25, 4.2.x before 4.2.14, and 4.4.x before 4.4.2, when the AlwaysDownloadAttachments config setting is not in use, allows remote attackers to inject arbitrary web script or HTML via a file upload with an unspecified content type.

CVSS3: 6.1
0%
Низкий
больше 8 лет назад
debian логотип
CVE-2016-6127

Cross-site scripting (XSS) vulnerability in Request Tracker (RT) 4.x b ...

CVSS3: 6.1
0%
Низкий
больше 8 лет назад
github логотип
GHSA-57pq-pp54-cgmc

Cross-site scripting (XSS) vulnerability in Request Tracker (RT) 4.x before 4.0.25, 4.2.x before 4.2.14, and 4.4.x before 4.4.2, when the AlwaysDownloadAttachments config setting is not in use, allows remote attackers to inject arbitrary web script or HTML via a file upload with an unspecified content type.

CVSS3: 6.1
0%
Низкий
больше 3 лет назад

Уязвимостей на страницу