SOC status:Duty analyst on shift

UK Cyber Defence
VulnerabilityModified

CVE-2017-1000011

MyWebSQL version 3.6 is vulnerable to stored XSS in the database manager component resulting in account takeover or stealing of information

MEDIUM 6.1EPSS 0.72%

Does this matter?

Lower severity and a low EPSS score (0.72%). Track it; it rarely justifies an emergency change on its own.

Description

MyWebSQL version 3.6 is vulnerable to stored XSS in the database manager component resulting in account takeover or stealing of information

CVSS 3.0
6.1 MEDIUMCVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
EPSS
0.72% probability · 52th percentile
CISA KEV
Not listed
Weakness
CWE-79
Affected
mywebsql/mywebsql
Source
cve@mitre.org

References

Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.