PT-2019-8587 · Paypal · Paypal/Adaptivepayments-Sdk-Php
Published
2019-07-10
·
Updated
2022-05-24
·
CVE-2017-6217
CVSS v3.1
6.1
Medium
| Vector | AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N |
Name of the Vulnerable Software and Affected Versions
paypal/adaptivepayments-sdk-php version 3.9.2
Description
The issue is related to a reflected XSS in the SetPaymentOptions.php file, which can result in code execution.
Recommendations
For paypal/adaptivepayments-sdk-php version 3.9.2, update to a version that fixes the reflected XSS issue in the SetPaymentOptions.php file to prevent code execution.
Exploit
Fix
XSS
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Paypal/Adaptivepayments-Sdk-Php