Логотип exploitDog
bind:CVE-2017-18176
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2017-18176

Количество 2

Количество 2

nvd логотип

CVE-2017-18176

почти 8 лет назад

Progress Sitefinity 9.1 has XSS via file upload, because JavaScript code in an HTML file has the same origin as the application's own code. This is fixed in 10.1.

CVSS3: 5.4
EPSS: Низкий
github логотип

GHSA-wqvj-w8h2-pwwr

больше 3 лет назад

Progress Sitefinity 9.1 has XSS via file upload, because JavaScript code in an HTML file has the same origin as the application's own code. This is fixed in 10.1.

CVSS3: 5.4
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2017-18176

Progress Sitefinity 9.1 has XSS via file upload, because JavaScript code in an HTML file has the same origin as the application's own code. This is fixed in 10.1.

CVSS3: 5.4
0%
Низкий
почти 8 лет назад
github логотип
GHSA-wqvj-w8h2-pwwr

Progress Sitefinity 9.1 has XSS via file upload, because JavaScript code in an HTML file has the same origin as the application's own code. This is fixed in 10.1.

CVSS3: 5.4
0%
Низкий
больше 3 лет назад

Уязвимостей на страницу