PT-2018-12313 · Pimcore · Pimcore

N. Rai-Ngoen

+1

·

Publicado

2018-08-24

·

Atualizado

2022-05-14

·

CVE-2018-14059

CVSS v3.1

5.4

Média

VetorAV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N
Name of the Vulnerable Software and Affected Versions Pimcore (affected versions not specified)
Description The issue allows for XSS attacks through various functions, including Users, Assets, Data Objects, Video Thumbnails, Image Thumbnails, Field-Collections, Objectbrick, Classification Store, Document Types, Predefined Properties, Predefined Asset Metadata, Quantity Value, and Static Routes.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

XSS

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2018-14059
GHSA-276R-24XQ-HWG8

Produtos afetados

Pimcore