Логотип exploitDog
bind:CVE-2020-1949
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2020-1949

Количество 2

Количество 2

nvd логотип

CVE-2020-1949

почти 6 лет назад

Scripts in Sling CMS before 0.16.0 do not property escape the Sling Selector from URLs when generating navigational elements for the administrative consoles and are vulnerable to reflected XSS attacks.

CVSS3: 6.1
EPSS: Низкий
github логотип

GHSA-2r68-qm7v-72rg

больше 3 лет назад

Scripts in Sling CMS before 0.16.0 do not property escape the Sling Selector from URLs when generating navigational elements for the administrative consoles and are vulnerable to reflected XSS attacks.

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2020-1949

Scripts in Sling CMS before 0.16.0 do not property escape the Sling Selector from URLs when generating navigational elements for the administrative consoles and are vulnerable to reflected XSS attacks.

CVSS3: 6.1
2%
Низкий
почти 6 лет назад
github логотип
GHSA-2r68-qm7v-72rg

Scripts in Sling CMS before 0.16.0 do not property escape the Sling Selector from URLs when generating navigational elements for the administrative consoles and are vulnerable to reflected XSS attacks.

2%
Низкий
больше 3 лет назад

Уязвимостей на страницу