Логотип exploitDog
bind:CVE-2022-26497
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2022-26497

Количество 2

Количество 2

nvd логотип

CVE-2022-26497

больше 3 лет назад

BigBlueButton Greenlight 2.11.1 allows XSS. A threat actor could have a username containing a JavaScript payload. The payload gets executed in the browser of the victim in the "Share room access" dialog if the victim has shared access to the particular room with the attacker previously.

CVSS3: 5.4
EPSS: Низкий
github логотип

GHSA-w3cv-3c36-h8j2

больше 3 лет назад

BigBlueButton Greenlight 2.11.1 allows XSS. A threat actor could have a username containing a JavaScript payload. The payload gets executed in the browser of the victim in the "Share room access" dialog if the victim has shared access to the particular room with the attacker previously.

CVSS3: 5.4
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2022-26497

BigBlueButton Greenlight 2.11.1 allows XSS. A threat actor could have a username containing a JavaScript payload. The payload gets executed in the browser of the victim in the "Share room access" dialog if the victim has shared access to the particular room with the attacker previously.

CVSS3: 5.4
0%
Низкий
больше 3 лет назад
github логотип
GHSA-w3cv-3c36-h8j2

BigBlueButton Greenlight 2.11.1 allows XSS. A threat actor could have a username containing a JavaScript payload. The payload gets executed in the browser of the victim in the "Share room access" dialog if the victim has shared access to the particular room with the attacker previously.

CVSS3: 5.4
0%
Низкий
больше 3 лет назад

Уязвимостей на страницу