Логотип exploitDog
bind:CVE-2020-36905
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2020-36905

Количество 2

Количество 2

nvd логотип

CVE-2020-36905

около 1 месяца назад

FIBARO System Home Center 5.021 contains a remote file inclusion vulnerability in the undocumented proxy API that allows attackers to include arbitrary client-side scripts. Attackers can exploit the 'url' GET parameter to inject malicious JavaScript and potentially hijack user sessions or manipulate page content.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-433h-wv4r-9p9x

около 1 месяца назад

FIBARO System Home Center 5.021 contains a remote file inclusion vulnerability in the undocumented proxy API that allows attackers to include arbitrary client-side scripts. Attackers can exploit the 'url' GET parameter to inject malicious JavaScript and potentially hijack user sessions or manipulate page content.

CVSS3: 7.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2020-36905

FIBARO System Home Center 5.021 contains a remote file inclusion vulnerability in the undocumented proxy API that allows attackers to include arbitrary client-side scripts. Attackers can exploit the 'url' GET parameter to inject malicious JavaScript and potentially hijack user sessions or manipulate page content.

CVSS3: 7.5
0%
Низкий
около 1 месяца назад
github логотип
GHSA-433h-wv4r-9p9x

FIBARO System Home Center 5.021 contains a remote file inclusion vulnerability in the undocumented proxy API that allows attackers to include arbitrary client-side scripts. Attackers can exploit the 'url' GET parameter to inject malicious JavaScript and potentially hijack user sessions or manipulate page content.

CVSS3: 7.5
0%
Низкий
около 1 месяца назад

Уязвимостей на страницу