Логотип exploitDog
bind:CVE-2023-46596
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2023-46596

Количество 2

Количество 2

nvd логотип

CVE-2023-46596

почти 2 года назад

Improper input validation in Algosec FireFlow VisualFlow workflow editor via Name, Description and Configuration File field in version A32.20, A32.50, A32.60 permits an attacker to initiate an XSS attack by injecting malicious executable scripts into the application's code. Fixed in version A32.20 (b600 and above), A32.50 (b430 and above), A32.60 (b250 and above)

CVSS3: 5.1
EPSS: Низкий
github логотип

GHSA-qxwj-fm5r-rhx8

почти 2 года назад

Improper input validation in Algosec FireFlow VisualFlow workflow editor via Name, Description and Configuration File field in version A32.20, A32.50, A32.60 allows an attacker to initiate an XSS attack by injecting malicious executable scripts into the code of application. Fixed in version A32.20 (b600 and above), A32.50 (b430 and above), A32.60 (b250 and above)

CVSS3: 5.1
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2023-46596

Improper input validation in Algosec FireFlow VisualFlow workflow editor via Name, Description and Configuration File field in version A32.20, A32.50, A32.60 permits an attacker to initiate an XSS attack by injecting malicious executable scripts into the application's code. Fixed in version A32.20 (b600 and above), A32.50 (b430 and above), A32.60 (b250 and above)

CVSS3: 5.1
0%
Низкий
почти 2 года назад
github логотип
GHSA-qxwj-fm5r-rhx8

Improper input validation in Algosec FireFlow VisualFlow workflow editor via Name, Description and Configuration File field in version A32.20, A32.50, A32.60 allows an attacker to initiate an XSS attack by injecting malicious executable scripts into the code of application. Fixed in version A32.20 (b600 and above), A32.50 (b430 and above), A32.60 (b250 and above)

CVSS3: 5.1
0%
Низкий
почти 2 года назад

Уязвимостей на страницу