Логотип exploitDog
bind:CVE-2017-14522
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2017-14522

Количество 2

Количество 2

nvd логотип

CVE-2017-14522

около 8 лет назад

In WonderCMS 2.3.1, the application's input fields accept arbitrary user input resulting in execution of malicious JavaScript. NOTE: the vendor disputes this issue stating that this is a feature that enables only a logged in administrator to write execute JavaScript anywhere on their website

CVSS3: 6.1
EPSS: Низкий
github логотип

GHSA-c5p9-qfxj-gqf7

больше 3 лет назад

** DISPUTED ** In WonderCMS 2.3.1, the application's input fields accept arbitrary user input resulting in execution of malicious JavaScript. NOTE: the vendor disputes this issue stating that this is a feature that enables only a logged in administrator to write execute JavaScript anywhere on their website.

CVSS3: 6.1
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2017-14522

In WonderCMS 2.3.1, the application's input fields accept arbitrary user input resulting in execution of malicious JavaScript. NOTE: the vendor disputes this issue stating that this is a feature that enables only a logged in administrator to write execute JavaScript anywhere on their website

CVSS3: 6.1
0%
Низкий
около 8 лет назад
github логотип
GHSA-c5p9-qfxj-gqf7

** DISPUTED ** In WonderCMS 2.3.1, the application's input fields accept arbitrary user input resulting in execution of malicious JavaScript. NOTE: the vendor disputes this issue stating that this is a feature that enables only a logged in administrator to write execute JavaScript anywhere on their website.

CVSS3: 6.1
0%
Низкий
больше 3 лет назад

Уязвимостей на страницу