Логотип exploitDog
bind:CVE-2021-30171
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2021-30171

Количество 2

Количество 2

nvd логотип

CVE-2021-30171

почти 5 лет назад

Special characters of ERP POS news page are not filtered in users’ input, which allow remote authenticated attackers can inject malicious JavaScript and carry out stored XSS (Stored Cross-site scripting) attacks, additionally access and manipulate customer’s information.

CVSS3: 4.6
EPSS: Низкий
github логотип

GHSA-9w75-p6x3-6qwp

больше 3 лет назад

Special characters of ERP POS news page are not filtered in users’ input, which allow remote authenticated attackers can inject malicious JavaScript and carry out stored XSS (Stored Cross-site scripting) attacks, additionally access and manipulate customer’s information.

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2021-30171

Special characters of ERP POS news page are not filtered in users’ input, which allow remote authenticated attackers can inject malicious JavaScript and carry out stored XSS (Stored Cross-site scripting) attacks, additionally access and manipulate customer’s information.

CVSS3: 4.6
0%
Низкий
почти 5 лет назад
github логотип
GHSA-9w75-p6x3-6qwp

Special characters of ERP POS news page are not filtered in users’ input, which allow remote authenticated attackers can inject malicious JavaScript and carry out stored XSS (Stored Cross-site scripting) attacks, additionally access and manipulate customer’s information.

0%
Низкий
больше 3 лет назад

Уязвимостей на страницу