Логотип exploitDog
bind:CVE-2018-8737
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2018-8737

Количество 2

Количество 2

nvd логотип

CVE-2018-8737

почти 8 лет назад

Bookme Control Panel 2.0 Application is vulnerable to stored XSS within the Customers "Book Me" function. Within the Name and Note (aka custName and custNote) sections of the Customers screen, the application does not sanitize user-supplied input and renders injected JavaScript code to the user's browser.

CVSS3: 5.4
EPSS: Низкий
github логотип

GHSA-6q78-2ppv-pv99

больше 3 лет назад

Bookme Control Panel 2.0 Application is vulnerable to stored XSS within the Customers "Book Me" function. Within the Name and Note (aka custName and custNote) sections of the Customers screen, the application does not sanitize user-supplied input and renders injected JavaScript code to the user's browser.

CVSS3: 5.4
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2018-8737

Bookme Control Panel 2.0 Application is vulnerable to stored XSS within the Customers "Book Me" function. Within the Name and Note (aka custName and custNote) sections of the Customers screen, the application does not sanitize user-supplied input and renders injected JavaScript code to the user's browser.

CVSS3: 5.4
0%
Низкий
почти 8 лет назад
github логотип
GHSA-6q78-2ppv-pv99

Bookme Control Panel 2.0 Application is vulnerable to stored XSS within the Customers "Book Me" function. Within the Name and Note (aka custName and custNote) sections of the Customers screen, the application does not sanitize user-supplied input and renders injected JavaScript code to the user's browser.

CVSS3: 5.4
0%
Низкий
больше 3 лет назад

Уязвимостей на страницу