Логотип exploitDog
bind:CVE-2021-30170
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2021-30170

Количество 2

Количество 2

nvd логотип

CVE-2021-30170

почти 5 лет назад

Special characters of ERP POS customer profile page are not filtered in users’ input, which allow remote authenticated attackers can inject malicious JavaScript and carry out stored XSS (Stored Cross-site scripting) attacks, additionally access and manipulate customer’s information.

CVSS3: 4.6
EPSS: Низкий
github логотип

GHSA-2q53-9g7q-p5mg

больше 3 лет назад

Special characters of ERP POS customer profile page are not filtered in users’ input, which allow remote authenticated attackers can inject malicious JavaScript and carry out stored XSS (Stored Cross-site scripting) attacks, additionally access and manipulate customer’s information.

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2021-30170

Special characters of ERP POS customer profile page are not filtered in users’ input, which allow remote authenticated attackers can inject malicious JavaScript and carry out stored XSS (Stored Cross-site scripting) attacks, additionally access and manipulate customer’s information.

CVSS3: 4.6
0%
Низкий
почти 5 лет назад
github логотип
GHSA-2q53-9g7q-p5mg

Special characters of ERP POS customer profile page are not filtered in users’ input, which allow remote authenticated attackers can inject malicious JavaScript and carry out stored XSS (Stored Cross-site scripting) attacks, additionally access and manipulate customer’s information.

0%
Низкий
больше 3 лет назад

Уязвимостей на страницу