Логотип exploitDog
bind:CVE-2019-12250
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2019-12250

Количество 2

Количество 2

nvd логотип

CVE-2019-12250

больше 6 лет назад

IdentityServer IdentityServer4 through 2.4 has stored XSS via the httpContext to the host/Extensions/RequestLoggerMiddleware.cs LogForErrorContext method, which can be triggered by viewing a log. NOTE: the software maintainer disputes that this is a vulnerability because the request logger is not part of IdentityServer but only our development test host

CVSS3: 6.1
EPSS: Низкий
github логотип

GHSA-jg67-mr48-c26q

больше 3 лет назад

IdentityServer IdentityServer4 through 2.4 has stored XSS via the httpContext to the host/Extensions/RequestLoggerMiddleware.cs LogForErrorContext method, which can be triggered by viewing a log.

CVSS3: 6.1
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2019-12250

IdentityServer IdentityServer4 through 2.4 has stored XSS via the httpContext to the host/Extensions/RequestLoggerMiddleware.cs LogForErrorContext method, which can be triggered by viewing a log. NOTE: the software maintainer disputes that this is a vulnerability because the request logger is not part of IdentityServer but only our development test host

CVSS3: 6.1
0%
Низкий
больше 6 лет назад
github логотип
GHSA-jg67-mr48-c26q

IdentityServer IdentityServer4 through 2.4 has stored XSS via the httpContext to the host/Extensions/RequestLoggerMiddleware.cs LogForErrorContext method, which can be triggered by viewing a log.

CVSS3: 6.1
0%
Низкий
больше 3 лет назад

Уязвимостей на страницу