Логотип exploitDog
bind:CVE-2016-8634
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2016-8634

Количество 4

Количество 4

redhat логотип

CVE-2016-8634

больше 9 лет назад

A vulnerability was found in foreman 1.14.0. When creating an organization or location in Foreman, if the name contains HTML then the second step of the wizard (/organizations/id/step2) will render the HTML. This occurs in the alertbox on the page. The result is a stored XSS attack if an organization/location with HTML in the name is created, then a user is linked directly to this URL.

CVSS3: 6.1
EPSS: Низкий
nvd логотип

CVE-2016-8634

больше 7 лет назад

A vulnerability was found in foreman 1.14.0. When creating an organization or location in Foreman, if the name contains HTML then the second step of the wizard (/organizations/id/step2) will render the HTML. This occurs in the alertbox on the page. The result is a stored XSS attack if an organization/location with HTML in the name is created, then a user is linked directly to this URL.

CVSS3: 6.1
EPSS: Низкий
debian логотип

CVE-2016-8634

больше 7 лет назад

A vulnerability was found in foreman 1.14.0. When creating an organiza ...

CVSS3: 6.1
EPSS: Низкий
github логотип

GHSA-fjj6-r3pr-3rrj

больше 3 лет назад

A vulnerability was found in foreman 1.14.0. When creating an organization or location in Foreman, if the name contains HTML then the second step of the wizard (/organizations/id/step2) will render the HTML. This occurs in the alertbox on the page. The result is a stored XSS attack if an organization/location with HTML in the name is created, then a user is linked directly to this URL.

CVSS3: 5.4
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
redhat логотип
CVE-2016-8634

A vulnerability was found in foreman 1.14.0. When creating an organization or location in Foreman, if the name contains HTML then the second step of the wizard (/organizations/id/step2) will render the HTML. This occurs in the alertbox on the page. The result is a stored XSS attack if an organization/location with HTML in the name is created, then a user is linked directly to this URL.

CVSS3: 6.1
0%
Низкий
больше 9 лет назад
nvd логотип
CVE-2016-8634

A vulnerability was found in foreman 1.14.0. When creating an organization or location in Foreman, if the name contains HTML then the second step of the wizard (/organizations/id/step2) will render the HTML. This occurs in the alertbox on the page. The result is a stored XSS attack if an organization/location with HTML in the name is created, then a user is linked directly to this URL.

CVSS3: 6.1
0%
Низкий
больше 7 лет назад
debian логотип
CVE-2016-8634

A vulnerability was found in foreman 1.14.0. When creating an organiza ...

CVSS3: 6.1
0%
Низкий
больше 7 лет назад
github логотип
GHSA-fjj6-r3pr-3rrj

A vulnerability was found in foreman 1.14.0. When creating an organization or location in Foreman, if the name contains HTML then the second step of the wizard (/organizations/id/step2) will render the HTML. This occurs in the alertbox on the page. The result is a stored XSS attack if an organization/location with HTML in the name is created, then a user is linked directly to this URL.

CVSS3: 5.4
0%
Низкий
больше 3 лет назад

Уязвимостей на страницу