Количество 3
Количество 3
CVE-2024-9571
Cross-Site Scripting (XSS) vulnerability in SOPlanning <1.45, due to lack of proper validation of user input via /soplanning/www/process/xajax_server.php, affecting multiple parameters. This could allow a remote user to send a specially crafted query to an authenticated user and partially take control of their browser session.
GHSA-gxgq-8g7h-rw9j
Cross-Site Scripting (XSS) vulnerability in SOPlanning <1.45, due to lack of proper validation of user input via /soplanning/www/process/xajax_server.php, affecting multiple parameters. This could allow a remote user to send a specially crafted query to an authenticated user and partially take control of their browser session.
BDU:2024-08510
Уязвимость компонента soplanning/www/process/xajax_server.php CMS-системы SOPlanning (Simple Online Planning), позволяющая нарушителю провести атаку межсайтового скриптинга (XSS)
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2024-9571 Cross-Site Scripting (XSS) vulnerability in SOPlanning <1.45, due to lack of proper validation of user input via /soplanning/www/process/xajax_server.php, affecting multiple parameters. This could allow a remote user to send a specially crafted query to an authenticated user and partially take control of their browser session. | CVSS3: 6.3 | 0% Низкий | больше 1 года назад | |
GHSA-gxgq-8g7h-rw9j Cross-Site Scripting (XSS) vulnerability in SOPlanning <1.45, due to lack of proper validation of user input via /soplanning/www/process/xajax_server.php, affecting multiple parameters. This could allow a remote user to send a specially crafted query to an authenticated user and partially take control of their browser session. | CVSS3: 6.3 | 0% Низкий | больше 1 года назад | |
BDU:2024-08510 Уязвимость компонента soplanning/www/process/xajax_server.php CMS-системы SOPlanning (Simple Online Planning), позволяющая нарушителю провести атаку межсайтового скриптинга (XSS) | CVSS3: 6.3 | 0% Низкий | больше 1 года назад |
Уязвимостей на страницу