Логотип exploitDog
bind:CVE-2021-36130
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2021-36130

Количество 2

Количество 2

nvd логотип

CVE-2021-36130

больше 4 лет назад

An XSS issue was discovered in the SocialProfile extension in MediaWiki through 1.36. Within several gift-related special pages, a privileged user with the awardmanage right could inject arbitrary HTML and JavaScript within various gift-related data fields. The attack could easily propagate across many pages for many users.

CVSS3: 4.8
EPSS: Низкий
github логотип

GHSA-r34r-8rcg-frg4

больше 3 лет назад

An XSS issue was discovered in the SocialProfile extension in MediaWiki through 1.36. Within several gift-related special pages, a privileged user with the awardmanage right could inject arbitrary HTML and JavaScript within various gift-related data fields. The attack could easily propagate across many pages for many users.

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2021-36130

An XSS issue was discovered in the SocialProfile extension in MediaWiki through 1.36. Within several gift-related special pages, a privileged user with the awardmanage right could inject arbitrary HTML and JavaScript within various gift-related data fields. The attack could easily propagate across many pages for many users.

CVSS3: 4.8
0%
Низкий
больше 4 лет назад
github логотип
GHSA-r34r-8rcg-frg4

An XSS issue was discovered in the SocialProfile extension in MediaWiki through 1.36. Within several gift-related special pages, a privileged user with the awardmanage right could inject arbitrary HTML and JavaScript within various gift-related data fields. The attack could easily propagate across many pages for many users.

0%
Низкий
больше 3 лет назад

Уязвимостей на страницу