Логотип exploitDog
bind:CVE-2020-13697
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2020-13697

Количество 2

Количество 2

nvd логотип

CVE-2020-13697

почти 5 лет назад

An issue was discovered in RouterNanoHTTPD.java in NanoHTTPD through 2.3.1. The GeneralHandler class implements a basic GET handler that prints debug information as an HTML page. Any web server that extends this class without implementing its own GET handler is vulnerable to reflected XSS, because the GeneralHandler GET handler prints user input passed through the query string without any sanitization.

CVSS3: 6.1
EPSS: Низкий
github логотип

GHSA-pr5m-4w22-8483

почти 5 лет назад

NanoHTTPD Cross-site Scripting vulnerability

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2020-13697

An issue was discovered in RouterNanoHTTPD.java in NanoHTTPD through 2.3.1. The GeneralHandler class implements a basic GET handler that prints debug information as an HTML page. Any web server that extends this class without implementing its own GET handler is vulnerable to reflected XSS, because the GeneralHandler GET handler prints user input passed through the query string without any sanitization.

CVSS3: 6.1
0%
Низкий
почти 5 лет назад
github логотип
GHSA-pr5m-4w22-8483

NanoHTTPD Cross-site Scripting vulnerability

0%
Низкий
почти 5 лет назад

Уязвимостей на страницу