CVE-2020-5317
CVE-2020-5317
Vexday Risk Score
13Bajo
Decisión SSVC (CISA)
Track
Sin señal de explotación → monitorear
CVSS 6.2EPSS 0.6%KEV nãoPoC —Nuclei —Metasploit —Patch —
Ciclo de vida
06 feb 2020Publicada en NVD
Recomendación: Monitorear — sin señal de explotación por ahora.
Dell EMC ECS versions prior to 3.4.0.1 contain an XSS vulnerability. A remote authenticated malicious user could exploit this vulnerability to store malicious HTML or JavaScript code in a trusted application data store. When victim users access the data store through their browsers, the malicious code gets executed by the web browser in the context of the vulnerable web application.
CVSS:3.0/AV:N/AC:L/PR:H/UI:R/S:C/C:N/I:H/A:N
Productos afectados
Dell · Elastic Cloud Storage¿Quieres saber si tu infraestructura está expuesta a esto?
Hablar con TrueHacking →