Логотип exploitDog
bind:CVE-2020-26713
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2020-26713

Количество 2

Количество 2

nvd логотип

CVE-2020-26713

около 5 лет назад

REDCap 10.3.4 contains a XSS vulnerability in the ToDoList function with parameter sort. The information submitted by the user is immediately returned in the response and not escaped leading to the reflected XSS vulnerability. Attackers can exploit vulnerabilities to steal login session information or borrow user rights to perform unauthorized acts.

CVSS3: 6.1
EPSS: Низкий
github логотип

GHSA-g6h9-mmp2-jjh2

больше 3 лет назад

REDCap 10.3.4 contains a XSS vulnerability in the ToDoList function with parameter sort. The information submitted by the user is immediately returned in the response and not escaped leading to the reflected XSS vulnerability. Attackers can exploit vulnerabilities to steal login session information or borrow user rights to perform unauthorized acts.

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2020-26713

REDCap 10.3.4 contains a XSS vulnerability in the ToDoList function with parameter sort. The information submitted by the user is immediately returned in the response and not escaped leading to the reflected XSS vulnerability. Attackers can exploit vulnerabilities to steal login session information or borrow user rights to perform unauthorized acts.

CVSS3: 6.1
0%
Низкий
около 5 лет назад
github логотип
GHSA-g6h9-mmp2-jjh2

REDCap 10.3.4 contains a XSS vulnerability in the ToDoList function with parameter sort. The information submitted by the user is immediately returned in the response and not escaped leading to the reflected XSS vulnerability. Attackers can exploit vulnerabilities to steal login session information or borrow user rights to perform unauthorized acts.

0%
Низкий
больше 3 лет назад

Уязвимостей на страницу