Логотип exploitDog
bind:CVE-2020-11813
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2020-11813

Количество 2

Количество 2

nvd логотип

CVE-2020-11813

почти 6 лет назад

In Rukovoditel 2.5.2, there is a stored XSS vulnerability on the configuration page via the copyright text input. Thus, an attacker can inject a malicious script to steal all users' valuable data. This copyright text is on every page so this attack vector can be very dangerous.

CVSS3: 5.4
EPSS: Низкий
github логотип

GHSA-mx56-653q-vrf3

больше 3 лет назад

In Rukovoditel 2.5.2, there is a stored XSS vulnerability on the configuration page via the copyright text input. Thus, an attacker can inject a malicious script to steal all users' valuable data. This copyright text is on every page so this attack vector can be very dangerous.

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2020-11813

In Rukovoditel 2.5.2, there is a stored XSS vulnerability on the configuration page via the copyright text input. Thus, an attacker can inject a malicious script to steal all users' valuable data. This copyright text is on every page so this attack vector can be very dangerous.

CVSS3: 5.4
0%
Низкий
почти 6 лет назад
github логотип
GHSA-mx56-653q-vrf3

In Rukovoditel 2.5.2, there is a stored XSS vulnerability on the configuration page via the copyright text input. Thus, an attacker can inject a malicious script to steal all users' valuable data. This copyright text is on every page so this attack vector can be very dangerous.

0%
Низкий
больше 3 лет назад

Уязвимостей на страницу