Логотип exploitDog
bind:CVE-2022-43983
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2022-43983

Количество 2

Количество 2

nvd логотип

CVE-2022-43983

около 3 лет назад

Browsershot version 3.57.2 allows an external attacker to remotely obtain arbitrary local files. This is possible because the application does not validate that the HTML content passed to the Browsershot::html method does not contain URL's that use the file:// protocol.

CVSS3: 8.2
EPSS: Низкий
github логотип

GHSA-82h9-v8vh-mfpq

около 3 лет назад

Browsershot vulnerable to Cross-Site Scripting (XSS)

CVSS3: 6.1
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2022-43983

Browsershot version 3.57.2 allows an external attacker to remotely obtain arbitrary local files. This is possible because the application does not validate that the HTML content passed to the Browsershot::html method does not contain URL's that use the file:// protocol.

CVSS3: 8.2
0%
Низкий
около 3 лет назад
github логотип
GHSA-82h9-v8vh-mfpq

Browsershot vulnerable to Cross-Site Scripting (XSS)

CVSS3: 6.1
0%
Низкий
около 3 лет назад

Уязвимостей на страницу