Логотип exploitDog
bind:CVE-2024-36697
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2024-36697

Количество 2

Количество 2

nvd логотип

CVE-2024-36697

7 месяцев назад

A cross-site scripting (XSS) vulnerability in the Admin Login page of Allworx System Software v9.1.9.12 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the SessionID parameter at query.asp.

CVSS3: 6.1
EPSS: Низкий
github логотип

GHSA-3vh6-pp7q-5xhf

7 месяцев назад

A cross-site scripting (XSS) vulnerability in the Admin Login page of Allworx System Software v9.1.9.12 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the SessionID parameter at query.asp.

CVSS3: 6.1
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2024-36697

A cross-site scripting (XSS) vulnerability in the Admin Login page of Allworx System Software v9.1.9.12 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the SessionID parameter at query.asp.

CVSS3: 6.1
0%
Низкий
7 месяцев назад
github логотип
GHSA-3vh6-pp7q-5xhf

A cross-site scripting (XSS) vulnerability in the Admin Login page of Allworx System Software v9.1.9.12 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the SessionID parameter at query.asp.

CVSS3: 6.1
0%
Низкий
7 месяцев назад

Уязвимостей на страницу