Логотип exploitDog
bind:CVE-2024-22397
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2024-22397

Количество 2

Количество 2

nvd логотип

CVE-2024-22397

почти 2 года назад

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') in the SonicOS SSLVPN portal allows a remote authenticated attacker as a firewall 'admin' user to store and execute arbitrary JavaScript code.

CVSS3: 8.3
EPSS: Низкий
github логотип

GHSA-x7hw-jwrw-qw78

почти 2 года назад

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') in the SonicOS SSLVPN portal allows a remote authenticated attacker as a firewall 'admin' user to store and execute arbitrary JavaScript code.

CVSS3: 8.3
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2024-22397

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') in the SonicOS SSLVPN portal allows a remote authenticated attacker as a firewall 'admin' user to store and execute arbitrary JavaScript code.

CVSS3: 8.3
0%
Низкий
почти 2 года назад
github логотип
GHSA-x7hw-jwrw-qw78

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') in the SonicOS SSLVPN portal allows a remote authenticated attacker as a firewall 'admin' user to store and execute arbitrary JavaScript code.

CVSS3: 8.3
0%
Низкий
почти 2 года назад

Уязвимостей на страницу