VulnerabilityModified
CVE-2008-10001
A vulnerability, which was classified as problematic, has been found in Pro2col Stingray FTS.
MEDIUM 6.1EPSS 0.61%
Does this matter?
Lower severity and a low EPSS score (0.61%). Track it; it rarely justifies an emergency change on its own.
Description
A vulnerability, which was classified as problematic, has been found in Pro2col Stingray FTS. The manipulation of the argument Username leads to cross site scripting. The attack may be initiated remotely. It is recommended to upgrade the affected component. NOTE: This vulnerability only affects products that are no longer supported by the maintainer
- CVSS 3.1
- 6.1 MEDIUMCVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
- EPSS
- 0.61% probability · 48th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-80, CWE-79
- Affected
- pro2col/stingray fts
- Source
- cna@vuldb.com
References
- http://seclists.org/bugtraq/2008/Sep/0157.htmlExploit, Mailing List, Third Party Advisory
- https://vuldb.com/?id.3809Permissions Required
- http://seclists.org/bugtraq/2008/Sep/0157.htmlExploit, Mailing List, Third Party Advisory
- https://vuldb.com/?id.3809Permissions Required
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.