TROYANOSYVIRUS
Voltar para CVEs

CVE-2018-1000543

N/A

Descricao

Akiee version 0.0.3 contains a XSS leading to code execution due to the use of node integration vulnerability in "Details" of a task is not validated that can result in XSS leading to abritrary code execution. This attack appear to be exploitable via The attacker tricks the victim into opening a crafted markdown.

Detalhes CVE

Pontuacao CVSS v3.1N/A
Publicado6/26/2018
Ultima modificacao11/21/2024
Fontenvd
Avistamentos honeypot0

Produtos afetados

rockiger:akiee

Fraquezas (CWE)

CWE-79

Referencias

Correlacoes IOC

Sem correlacoes registradas

This product uses data from the NVD API but is not endorsed or certified by the NVD.