PT-2023-11353 · Unknown · Ldapcherry

CVE-2019-25095

·

Publicado

2023-01-05

·

Atualizado

2024-05-17

CVSS v3.1

6.1

Média

VetorAV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
Name of the Vulnerable Software and Affected Versions kakwa LdapCherry versions up to 0.x
Description A problematic issue was found in the URL Handler component, leading to cross site scripting. The attack can be launched remotely, affecting an unknown function.
Recommendations For versions up to 0.x, upgrade to version 1.0.0 to address this issue.

Correção

XSS

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2019-25095
GHSA-VQ8W-X8V7-F88M
PYSEC-2023-19

Produtos afetados

Ldapcherry