Логотип exploitDog
bind:CVE-2022-24585
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2022-24585

Количество 4

Количество 4

ubuntu логотип

CVE-2022-24585

почти 4 года назад

A stored cross-site scripting (XSS) vulnerability in the component /core/admin/comment.php of PluXml v5.8.7 allows attackers to execute arbitrary web scripts or HTML via a crafted payload in the author parameter.

CVSS3: 5.4
EPSS: Низкий
nvd логотип

CVE-2022-24585

почти 4 года назад

A stored cross-site scripting (XSS) vulnerability in the component /core/admin/comment.php of PluXml v5.8.7 allows attackers to execute arbitrary web scripts or HTML via a crafted payload in the author parameter.

CVSS3: 5.4
EPSS: Низкий
debian логотип

CVE-2022-24585

почти 4 года назад

A stored cross-site scripting (XSS) vulnerability in the component /co ...

CVSS3: 5.4
EPSS: Низкий
github логотип

GHSA-cf35-6h64-hrpv

почти 4 года назад

A stored cross-site scripting (XSS) vulnerability in the component /core/admin/comment.php of PluXml v5.8.7 allows attackers to execute arbitrary web scripts or HTML via a crafted payload in the author parameter.

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2022-24585

A stored cross-site scripting (XSS) vulnerability in the component /core/admin/comment.php of PluXml v5.8.7 allows attackers to execute arbitrary web scripts or HTML via a crafted payload in the author parameter.

CVSS3: 5.4
0%
Низкий
почти 4 года назад
nvd логотип
CVE-2022-24585

A stored cross-site scripting (XSS) vulnerability in the component /core/admin/comment.php of PluXml v5.8.7 allows attackers to execute arbitrary web scripts or HTML via a crafted payload in the author parameter.

CVSS3: 5.4
0%
Низкий
почти 4 года назад
debian логотип
CVE-2022-24585

A stored cross-site scripting (XSS) vulnerability in the component /co ...

CVSS3: 5.4
0%
Низкий
почти 4 года назад
github логотип
GHSA-cf35-6h64-hrpv

A stored cross-site scripting (XSS) vulnerability in the component /core/admin/comment.php of PluXml v5.8.7 allows attackers to execute arbitrary web scripts or HTML via a crafted payload in the author parameter.

0%
Низкий
почти 4 года назад

Уязвимостей на страницу