Количество 2
Количество 2
CVE-2022-37721
около 3 лет назад
PyroCMS 3.9 is vulnerable to a stored Cross Site Scripting (XSS_ when a low privileged user such as an author, injects a crafted html and javascript payload in a blog post, leading to full admin account takeover or privilege escalation.
CVSS3: 9
EPSS: Низкий
GHSA-cm7f-hf2g-ghrp
около 3 лет назад
PyroCMS vulnerable to stored Cross Site Scripting
CVSS3: 9
EPSS: Низкий
Уязвимостей на страницу
20
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2022-37721 PyroCMS 3.9 is vulnerable to a stored Cross Site Scripting (XSS_ when a low privileged user such as an author, injects a crafted html and javascript payload in a blog post, leading to full admin account takeover or privilege escalation. | CVSS3: 9 | 0% Низкий | около 3 лет назад | |
GHSA-cm7f-hf2g-ghrp PyroCMS vulnerable to stored Cross Site Scripting | CVSS3: 9 | 0% Низкий | около 3 лет назад |
Уязвимостей на страницу
20