Логотип exploitDog
bind:CVE-2019-12386
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2019-12386

Количество 4

Количество 4

ubuntu логотип

CVE-2019-12386

больше 6 лет назад

An issue was discovered in Ampache through 3.9.1. A stored XSS exists in the localplay.php LocalPlay "add instance" functionality. The injected code is reflected in the instances menu. This vulnerability can be abused to force an admin to create a new privileged user whose credentials are known by the attacker.

CVSS3: 5.4
EPSS: Низкий
nvd логотип

CVE-2019-12386

больше 6 лет назад

An issue was discovered in Ampache through 3.9.1. A stored XSS exists in the localplay.php LocalPlay "add instance" functionality. The injected code is reflected in the instances menu. This vulnerability can be abused to force an admin to create a new privileged user whose credentials are known by the attacker.

CVSS3: 5.4
EPSS: Низкий
debian логотип

CVE-2019-12386

больше 6 лет назад

An issue was discovered in Ampache through 3.9.1. A stored XSS exists ...

CVSS3: 5.4
EPSS: Низкий
github логотип

GHSA-367h-866v-prvm

больше 3 лет назад

An issue was discovered in Ampache through 3.9.1. A stored XSS exists in the localplay.php LocalPlay "add instance" functionality. The injected code is reflected in the instances menu. This vulnerability can be abused to force an admin to create a new privileged user whose credentials are known by the attacker.

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2019-12386

An issue was discovered in Ampache through 3.9.1. A stored XSS exists in the localplay.php LocalPlay "add instance" functionality. The injected code is reflected in the instances menu. This vulnerability can be abused to force an admin to create a new privileged user whose credentials are known by the attacker.

CVSS3: 5.4
0%
Низкий
больше 6 лет назад
nvd логотип
CVE-2019-12386

An issue was discovered in Ampache through 3.9.1. A stored XSS exists in the localplay.php LocalPlay "add instance" functionality. The injected code is reflected in the instances menu. This vulnerability can be abused to force an admin to create a new privileged user whose credentials are known by the attacker.

CVSS3: 5.4
0%
Низкий
больше 6 лет назад
debian логотип
CVE-2019-12386

An issue was discovered in Ampache through 3.9.1. A stored XSS exists ...

CVSS3: 5.4
0%
Низкий
больше 6 лет назад
github логотип
GHSA-367h-866v-prvm

An issue was discovered in Ampache through 3.9.1. A stored XSS exists in the localplay.php LocalPlay "add instance" functionality. The injected code is reflected in the instances menu. This vulnerability can be abused to force an admin to create a new privileged user whose credentials are known by the attacker.

0%
Низкий
больше 3 лет назад

Уязвимостей на страницу