Логотип exploitDog
bind:CVE-2023-25827
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2023-25827

Количество 2

Количество 2

nvd логотип

CVE-2023-25827

почти 3 года назад

Due to insufficient validation of parameters reflected in error messages by the legacy HTTP query API and the logging endpoint, it is possible to inject and execute malicious JavaScript within the browser of a targeted OpenTSDB user. This issue shares the same root cause as CVE-2018-13003, a reflected XSS vulnerability with the suggestion endpoint.

CVSS3: 8.2
EPSS: Низкий
github логотип

GHSA-9chv-3w6c-jq9w

почти 3 года назад

Cross Site Scripting in OpenTSDB

CVSS3: 8.2
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2023-25827

Due to insufficient validation of parameters reflected in error messages by the legacy HTTP query API and the logging endpoint, it is possible to inject and execute malicious JavaScript within the browser of a targeted OpenTSDB user. This issue shares the same root cause as CVE-2018-13003, a reflected XSS vulnerability with the suggestion endpoint.

CVSS3: 8.2
0%
Низкий
почти 3 года назад
github логотип
GHSA-9chv-3w6c-jq9w

Cross Site Scripting in OpenTSDB

CVSS3: 8.2
0%
Низкий
почти 3 года назад

Уязвимостей на страницу