Логотип exploitDog
bind:CVE-2018-10854
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2018-10854

Количество 4

Количество 4

redhat логотип

CVE-2018-10854

почти 7 лет назад

cloudforms version, cloudforms 5.8 and cloudforms 5.9, is vulnerable to a cross-site-scripting. A flaw was found in CloudForms's v2v infrastructure mapping delete feature. A stored cross-site scripting due to improper sanitization of user input in Name field.

CVSS3: 6.5
EPSS: Низкий
nvd логотип

CVE-2018-10854

около 6 лет назад

cloudforms version, cloudforms 5.8 and cloudforms 5.9, is vulnerable to a cross-site-scripting. A flaw was found in CloudForms's v2v infrastructure mapping delete feature. A stored cross-site scripting due to improper sanitization of user input in Name field.

CVSS3: 5.4
EPSS: Низкий
github логотип

GHSA-wqjf-hq52-vg86

больше 3 лет назад

cloudforms version, cloudforms 5.8 and cloudforms 5.9, is vulnerable to a cross-site-scripting. A flaw was found in CloudForms's v2v infrastructure mapping delete feature. A stored cross-site scripting due to improper sanitization of user input in Name field.

CVSS3: 5.4
EPSS: Низкий
fstec логотип

BDU:2019-03408

больше 7 лет назад

Уязвимость программной платформы для управления виртуальными средами CloudForms Management Engine, связанная с непринятием мер по защите структуры веб-страницы, позволяющая нарушителю осуществить межсайтовую сценарную атаку

CVSS3: 6.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
redhat логотип
CVE-2018-10854

cloudforms version, cloudforms 5.8 and cloudforms 5.9, is vulnerable to a cross-site-scripting. A flaw was found in CloudForms's v2v infrastructure mapping delete feature. A stored cross-site scripting due to improper sanitization of user input in Name field.

CVSS3: 6.5
0%
Низкий
почти 7 лет назад
nvd логотип
CVE-2018-10854

cloudforms version, cloudforms 5.8 and cloudforms 5.9, is vulnerable to a cross-site-scripting. A flaw was found in CloudForms's v2v infrastructure mapping delete feature. A stored cross-site scripting due to improper sanitization of user input in Name field.

CVSS3: 5.4
0%
Низкий
около 6 лет назад
github логотип
GHSA-wqjf-hq52-vg86

cloudforms version, cloudforms 5.8 and cloudforms 5.9, is vulnerable to a cross-site-scripting. A flaw was found in CloudForms's v2v infrastructure mapping delete feature. A stored cross-site scripting due to improper sanitization of user input in Name field.

CVSS3: 5.4
0%
Низкий
больше 3 лет назад
fstec логотип
BDU:2019-03408

Уязвимость программной платформы для управления виртуальными средами CloudForms Management Engine, связанная с непринятием мер по защите структуры веб-страницы, позволяющая нарушителю осуществить межсайтовую сценарную атаку

CVSS3: 6.5
0%
Низкий
больше 7 лет назад

Уязвимостей на страницу