Логотип exploitDog
bind:CVE-2020-1697
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2020-1697

Количество 4

Количество 4

redhat логотип

CVE-2020-1697

около 6 лет назад

It was found in all keycloak versions before 9.0.0 that links to external applications (Application Links) in the admin console are not validated properly and could allow Stored XSS attacks. An authed malicious user could create URLs to trick users in other realms, and possibly conduct further attacks.

CVSS3: 6.1
EPSS: Низкий
nvd логотип

CVE-2020-1697

почти 6 лет назад

It was found in all keycloak versions before 9.0.0 that links to external applications (Application Links) in the admin console are not validated properly and could allow Stored XSS attacks. An authed malicious user could create URLs to trick users in other realms, and possibly conduct further attacks.

CVSS3: 6.1
EPSS: Низкий
debian логотип

CVE-2020-1697

почти 6 лет назад

It was found in all keycloak versions before 9.0.0 that links to exter ...

CVSS3: 6.1
EPSS: Низкий
github логотип

GHSA-8vf3-4w62-m3pq

почти 6 лет назад

XSS in Keycloak

CVSS3: 5.4
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
redhat логотип
CVE-2020-1697

It was found in all keycloak versions before 9.0.0 that links to external applications (Application Links) in the admin console are not validated properly and could allow Stored XSS attacks. An authed malicious user could create URLs to trick users in other realms, and possibly conduct further attacks.

CVSS3: 6.1
0%
Низкий
около 6 лет назад
nvd логотип
CVE-2020-1697

It was found in all keycloak versions before 9.0.0 that links to external applications (Application Links) in the admin console are not validated properly and could allow Stored XSS attacks. An authed malicious user could create URLs to trick users in other realms, and possibly conduct further attacks.

CVSS3: 6.1
0%
Низкий
почти 6 лет назад
debian логотип
CVE-2020-1697

It was found in all keycloak versions before 9.0.0 that links to exter ...

CVSS3: 6.1
0%
Низкий
почти 6 лет назад
github логотип
GHSA-8vf3-4w62-m3pq

XSS in Keycloak

CVSS3: 5.4
0%
Низкий
почти 6 лет назад

Уязвимостей на страницу