Логотип exploitDog
bind:CVE-2020-29475
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2020-29475

Количество 2

Количество 2

nvd логотип

CVE-2020-29475

около 5 лет назад

nopCommerce Store 4.30 is affected by cross-site scripting (XSS) in the Schedule tasks name field. This vulnerability can allow an attacker to inject the XSS payload in Schedule tasks and each time any user will go to that page of the website, the XSS triggers and attacker can able to steal the cookie according to the crafted payload.

CVSS3: 4.8
EPSS: Низкий
github логотип

GHSA-g5q9-9wx3-w9fh

больше 3 лет назад

nopCommerce Store 4.30 is affected by cross-site scripting (XSS) in the Schedule tasks name field. This vulnerability can allow an attacker to inject the XSS payload in Schedule tasks and each time any user will go to that page of the website, the XSS triggers and attacker can able to steal the cookie according to the crafted payload.

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2020-29475

nopCommerce Store 4.30 is affected by cross-site scripting (XSS) in the Schedule tasks name field. This vulnerability can allow an attacker to inject the XSS payload in Schedule tasks and each time any user will go to that page of the website, the XSS triggers and attacker can able to steal the cookie according to the crafted payload.

CVSS3: 4.8
0%
Низкий
около 5 лет назад
github логотип
GHSA-g5q9-9wx3-w9fh

nopCommerce Store 4.30 is affected by cross-site scripting (XSS) in the Schedule tasks name field. This vulnerability can allow an attacker to inject the XSS payload in Schedule tasks and each time any user will go to that page of the website, the XSS triggers and attacker can able to steal the cookie according to the crafted payload.

0%
Низкий
больше 3 лет назад

Уязвимостей на страницу