Логотип exploitDog
bind:CVE-2024-21517
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2024-21517

Количество 2

Количество 2

nvd логотип

CVE-2024-21517

больше 1 года назад

This affects versions of the package opencart/opencart from 4.0.0.0. A reflected XSS issue was identified in the redirect parameter of customer account/login route. An attacker can inject arbitrary HTML and Javascript into the page response. As this vulnerability is present in the account functionality it could be used to target and attack customers of the OpenCart shop. **Notes:** 1) The fix for this vulnerability is incomplete

CVSS3: 4.2
EPSS: Низкий
github логотип

GHSA-qc3q-8rr8-8p5v

больше 1 года назад

Cross site scripting in opencart

CVSS3: 4.2
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2024-21517

This affects versions of the package opencart/opencart from 4.0.0.0. A reflected XSS issue was identified in the redirect parameter of customer account/login route. An attacker can inject arbitrary HTML and Javascript into the page response. As this vulnerability is present in the account functionality it could be used to target and attack customers of the OpenCart shop. **Notes:** 1) The fix for this vulnerability is incomplete

CVSS3: 4.2
0%
Низкий
больше 1 года назад
github логотип
GHSA-qc3q-8rr8-8p5v

Cross site scripting in opencart

CVSS3: 4.2
0%
Низкий
больше 1 года назад

Уязвимостей на страницу