Логотип exploitDog
bind:CVE-2021-47873
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2021-47873

Количество 2

Количество 2

nvd логотип

CVE-2021-47873

18 дней назад

VestaCP versions prior to 0.9.8-25 contain a cross-site scripting vulnerability in the IP interface configuration that allows attackers to inject malicious scripts. Attackers can exploit the 'v_interface' parameter by sending a crafted POST request to the add/ip/ endpoint with a stored XSS payload.

CVSS3: 7.2
EPSS: Низкий
github логотип

GHSA-f955-hgxq-hv82

18 дней назад

VestaCP versions prior to 0.9.8-25 contain a cross-site scripting vulnerability in the IP interface configuration that allows attackers to inject malicious scripts. Attackers can exploit the 'v_interface' parameter by sending a crafted POST request to the add/ip/ endpoint with a stored XSS payload.

CVSS3: 7.2
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2021-47873

VestaCP versions prior to 0.9.8-25 contain a cross-site scripting vulnerability in the IP interface configuration that allows attackers to inject malicious scripts. Attackers can exploit the 'v_interface' parameter by sending a crafted POST request to the add/ip/ endpoint with a stored XSS payload.

CVSS3: 7.2
0%
Низкий
18 дней назад
github логотип
GHSA-f955-hgxq-hv82

VestaCP versions prior to 0.9.8-25 contain a cross-site scripting vulnerability in the IP interface configuration that allows attackers to inject malicious scripts. Attackers can exploit the 'v_interface' parameter by sending a crafted POST request to the add/ip/ endpoint with a stored XSS payload.

CVSS3: 7.2
0%
Низкий
18 дней назад

Уязвимостей на страницу