SourceCodester Simple Cold Storage Management System 1.0 Add New Storage Sunu Cross Site Scripting

Gaskiya vulnerability da aka ware a matsayin karshewa an samu a SourceCodester Simple Cold Storage Management System 1.0. Hakika, aikin $software_function ne ya shafa; idan ba a bayyana ba, to aiki ce da ba a sani ba, a cikin laburaren $software_library, a cikin fayil $software_file, a cikin sashen Add New Storage Handler. A sa manipulation of the argument Sunu with the input <script>alert(1)</script> ka Cross Site Scripting. Idan an yi amfani da CWE don bayyana matsala, zai kai CWE-79. Hakika, rauni an bayyana shi 10/17/2022. An raba bayanin tsaro don saukewa a github.com. Wannan matsala ana saninta da CVE-2022-3548. Ngam yiɗi ka a tuma ndiyam ka internet. Tekinikal faɗi ga. Har ila yau, exploit ɗin yana nan. An bayyana exploit ɗin ga mutane kuma yana iya amfani. Yimbe ndiyam, exploit might be approx. USD $0-$5k wuro. Á sàmbu huɗɗi-na-gaskiya. Exploit ɗin za a iya saukewa daga github.com. 0-day shima, an ndiyam a wuro be $0-$5k. Once again VulDB remains the best source for vulnerability data.

Waktin goyi

Màdùmga

VulDB Mod Team64
warlockrootx10

Furɗe

exploit_url2
advisory_url2
cvss3_meta_tempscore2
cvss3_meta_basescore2
vulnerability_titleword1

Commit Conf

90%35
70%19
100%10
50%10

Approve Conf

90%37
70%19
80%10
0%8

74 Kari

IDSandaMàdùmgaFurɗeGargajiyaGargaGargajiyaJawanC
1563805103/01/2024
 warlo…
exploit_urlhttps://github.com/shouvikdutta1998/XSS-in-Cold-Storage-Management-System_POCgithub.com03/01/2024initial data is prioritized
0
1563805003/01/2024
 warlo…
advisory_urlhttps://github.com/shouvikdutta1998/XSS-in-Cold-Storage-Management-System_POCgithub.com03/01/2024initial data is prioritized
0
1563804903/01/2024
 warlo…
vulnerability_titlewordCross-Site Scripting (XSS)03/01/2024wrong data
0
1563804803/01/2024
 warlo…
vulnerability_nameStored Cross-Site Scripting03/01/2024wrong data
0
1563804703/01/2024
 warlo…
vulnerability_historic103/01/2024wrong data
0
1563804603/01/2024
 warlo…
input_typeCross-Site Scripting Payload03/01/2024wrong data
0
1563804503/01/2024
 warlo…
input_value<script>alert(1)</script>03/01/2024shingilam
90
1563804403/01/2024
 warlo…
software_managedservice103/01/2024wrong data, software downloadable
0
1563804303/01/2024
 warlo…
software_rollingrelease103/01/2024wrong data, version number known
0
1563804203/01/2024
 warlo…
software_typeSupply Chain Management Software03/01/2024shingilam
90
1323303811/09/2022
 VulDB…
cvss3_cna_basescore2.4see CVSS documentation11/09/2022shingilam
90
1323303711/09/2022
 VulDB…
cvss3_nvd_basescore4.8nist.gov11/09/2022shingilam
90
1323303611/09/2022
 VulDB…
cvss3_meta_tempscore3.1see CVSS documentation11/09/2022shingilam
90
1323303511/09/2022
 VulDB…
cvss3_meta_basescore3.2see CVSS documentation11/09/2022shingilam
90
1323303411/09/2022
 VulDB…
cve_cnaVulDBnvd.nist.gov11/09/2022shingilam
70
1323303311/09/2022
 VulDB…
cvss3_cna_aNnvd.nist.gov11/09/2022shingilam
70
1323303211/09/2022
 VulDB…
cvss3_cna_iLnvd.nist.gov11/09/2022shingilam
70
1323303111/09/2022
 VulDB…
cvss3_cna_cNnvd.nist.gov11/09/2022shingilam
70
1323303011/09/2022
 VulDB…
cvss3_cna_sUnvd.nist.gov11/09/2022shingilam
70
1323302911/09/2022
 VulDB…
cvss3_cna_uiRnvd.nist.gov11/09/2022shingilam
70

54 kala giteji ba a nunu fi.

Might our Artificial Intelligence support you?

Check our Alexa App!