Логотип exploitDog
bind:CVE-2017-12098
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2017-12098

Количество 4

Количество 4

ubuntu логотип

CVE-2017-12098

около 8 лет назад

An exploitable cross site scripting (XSS) vulnerability exists in the add filter functionality of the rails_admin rails gem version 1.2.0. A specially crafted URL can cause an XSS flaw resulting in an attacker being able to execute arbitrary javascript on the victim's browser. An attacker can phish an authenticated user to trigger this vulnerability.

CVSS3: 6.1
EPSS: Низкий
nvd логотип

CVE-2017-12098

около 8 лет назад

An exploitable cross site scripting (XSS) vulnerability exists in the add filter functionality of the rails_admin rails gem version 1.2.0. A specially crafted URL can cause an XSS flaw resulting in an attacker being able to execute arbitrary javascript on the victim's browser. An attacker can phish an authenticated user to trigger this vulnerability.

CVSS3: 6.1
EPSS: Низкий
debian логотип

CVE-2017-12098

около 8 лет назад

An exploitable cross site scripting (XSS) vulnerability exists in the ...

CVSS3: 6.1
EPSS: Низкий
github логотип

GHSA-pxr8-w3jq-rcwj

почти 8 лет назад

rails_admin ruby gem XSS

CVSS3: 6.1
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2017-12098

An exploitable cross site scripting (XSS) vulnerability exists in the add filter functionality of the rails_admin rails gem version 1.2.0. A specially crafted URL can cause an XSS flaw resulting in an attacker being able to execute arbitrary javascript on the victim's browser. An attacker can phish an authenticated user to trigger this vulnerability.

CVSS3: 6.1
0%
Низкий
около 8 лет назад
nvd логотип
CVE-2017-12098

An exploitable cross site scripting (XSS) vulnerability exists in the add filter functionality of the rails_admin rails gem version 1.2.0. A specially crafted URL can cause an XSS flaw resulting in an attacker being able to execute arbitrary javascript on the victim's browser. An attacker can phish an authenticated user to trigger this vulnerability.

CVSS3: 6.1
0%
Низкий
около 8 лет назад
debian логотип
CVE-2017-12098

An exploitable cross site scripting (XSS) vulnerability exists in the ...

CVSS3: 6.1
0%
Низкий
около 8 лет назад
github логотип
GHSA-pxr8-w3jq-rcwj

rails_admin ruby gem XSS

CVSS3: 6.1
0%
Низкий
почти 8 лет назад

Уязвимостей на страницу