Логотип exploitDog
bind:CVE-2018-10099
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2018-10099

Количество 2

Количество 2

nvd логотип

CVE-2018-10099

около 7 лет назад

Google Monorail before 2018-04-04 has a Cross-Site Search (XS-Search) vulnerability because CSV downloads are affected by CSRF, and calculations of download times (for requests with duplicated columns) can be used to obtain sensitive information about the content of bug reports.

CVSS3: 5.3
EPSS: Низкий
github логотип

GHSA-9jwp-f2r6-576w

больше 3 лет назад

Google Monorail before 2018-04-04 has a Cross-Site Search (XS-Search) vulnerability because CSV downloads are affected by CSRF, and calculations of download times (for requests with duplicated columns) can be used to obtain sensitive information about the content of bug reports.

CVSS3: 5.3
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2018-10099

Google Monorail before 2018-04-04 has a Cross-Site Search (XS-Search) vulnerability because CSV downloads are affected by CSRF, and calculations of download times (for requests with duplicated columns) can be used to obtain sensitive information about the content of bug reports.

CVSS3: 5.3
0%
Низкий
около 7 лет назад
github логотип
GHSA-9jwp-f2r6-576w

Google Monorail before 2018-04-04 has a Cross-Site Search (XS-Search) vulnerability because CSV downloads are affected by CSRF, and calculations of download times (for requests with duplicated columns) can be used to obtain sensitive information about the content of bug reports.

CVSS3: 5.3
0%
Низкий
больше 3 лет назад

Уязвимостей на страницу