Логотип exploitDog
bind:CVE-2019-12562
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2019-12562

Количество 2

Количество 2

nvd логотип

CVE-2019-12562

больше 6 лет назад

Stored Cross-Site Scripting in DotNetNuke (DNN) Version before 9.4.0 allows remote attackers to store and embed the malicious script into the admin notification page. The exploit could be used to perfom any action with admin privileges such as managing content, adding users, uploading backdoors to the server, etc. Successful exploitation occurs when an admin user visits a notification page with stored cross-site scripting.

CVSS3: 6.1
EPSS: Средний
github логотип

GHSA-5whq-j5qg-wjvp

около 6 лет назад

Stored Cross-Site Scripting vulnerability in admin component of DotNetNuke

CVSS3: 6.1
EPSS: Средний

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2019-12562

Stored Cross-Site Scripting in DotNetNuke (DNN) Version before 9.4.0 allows remote attackers to store and embed the malicious script into the admin notification page. The exploit could be used to perfom any action with admin privileges such as managing content, adding users, uploading backdoors to the server, etc. Successful exploitation occurs when an admin user visits a notification page with stored cross-site scripting.

CVSS3: 6.1
39%
Средний
больше 6 лет назад
github логотип
GHSA-5whq-j5qg-wjvp

Stored Cross-Site Scripting vulnerability in admin component of DotNetNuke

CVSS3: 6.1
39%
Средний
около 6 лет назад

Уязвимостей на страницу