Логотип exploitDog
bind:CVE-2020-35852
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2020-35852

Количество 2

Количество 2

nvd логотип

CVE-2020-35852

почти 5 лет назад

Chatbox is affected by cross-site scripting (XSS). An attacker has to upload any XSS payload with SVG, XML file in Chatbox. There is no restriction on file upload in Chatbox which leads to stored XSS.

CVSS3: 6.1
EPSS: Низкий
github логотип

GHSA-hrgf-mc75-gm4x

больше 3 лет назад

Chatbox is affected by cross-site scripting (XSS). An attacker has to upload any XSS payload with SVG, XML file in Chatbox. There is no restriction on file upload in Chatbox which leads to stored XSS.

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2020-35852

Chatbox is affected by cross-site scripting (XSS). An attacker has to upload any XSS payload with SVG, XML file in Chatbox. There is no restriction on file upload in Chatbox which leads to stored XSS.

CVSS3: 6.1
0%
Низкий
почти 5 лет назад
github логотип
GHSA-hrgf-mc75-gm4x

Chatbox is affected by cross-site scripting (XSS). An attacker has to upload any XSS payload with SVG, XML file in Chatbox. There is no restriction on file upload in Chatbox which leads to stored XSS.

0%
Низкий
больше 3 лет назад

Уязвимостей на страницу