PT-2017-11580 · Cs Cart · Cs-Cart Japanese Edition+1

Satoshi Ogawa

·

Publicado

2017-11-17

·

Atualizado

2017-12-04

·

CVE-2017-10886

CVSS v3.1

5.4

Média

VetorAV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N
Name of the Vulnerable Software and Affected Versions CS-Cart Japanese Edition versions 4.3.10 and earlier (excluding v2 and v3) CS-Cart Multivendor Japanese Edition versions 4.3.10 and earlier (excluding v2 and v3)
Description A cross-site scripting issue allows an attacker to inject arbitrary web script or HTML via unspecified vectors.
Recommendations For CS-Cart Japanese Edition versions 4.3.10 and earlier (excluding v2 and v3), update to a version later than 4.3.10. For CS-Cart Multivendor Japanese Edition versions 4.3.10 and earlier (excluding v2 and v3), update to a version later than 4.3.10.

Correção

XSS

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2017-10886

Produtos afetados

Cs-Cart Japanese Edition
Cs-Cart Multivendor Japanese Edition