Логотип exploitDog
bind:CVE-2020-28351
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2020-28351

Количество 2

Количество 2

nvd логотип

CVE-2020-28351

около 5 лет назад

The conferencing component on Mitel ShoreTel 19.46.1802.0 devices could allow an unauthenticated attacker to conduct a reflected cross-site scripting (XSS) attack (via the PATH_INFO to index.php) due to insufficient validation for the time_zone object in the HOME_MEETING& page.

CVSS3: 6.1
EPSS: Низкий
github логотип

GHSA-94pc-7pmm-6j95

больше 3 лет назад

The conferencing component on Mitel ShoreTel 19.46.1802.0 devices could allow an unauthenticated attacker to conduct a reflected cross-site scripting (XSS) attack (via the PATH_INFO to index.php) due to insufficient validation for the time_zone object in the HOME_MEETING& page.

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2020-28351

The conferencing component on Mitel ShoreTel 19.46.1802.0 devices could allow an unauthenticated attacker to conduct a reflected cross-site scripting (XSS) attack (via the PATH_INFO to index.php) due to insufficient validation for the time_zone object in the HOME_MEETING& page.

CVSS3: 6.1
9%
Низкий
около 5 лет назад
github логотип
GHSA-94pc-7pmm-6j95

The conferencing component on Mitel ShoreTel 19.46.1802.0 devices could allow an unauthenticated attacker to conduct a reflected cross-site scripting (XSS) attack (via the PATH_INFO to index.php) due to insufficient validation for the time_zone object in the HOME_MEETING& page.

9%
Низкий
больше 3 лет назад

Уязвимостей на страницу