ZeroHour

CVE-2018-11343

PoC ×3
CVSS 3.0
5.4 medium
EPSS
<1%p58
Published
()
Modified
Description

A persistent cross site scripting vulnerability in playlistmanger.cgi in the ASUSTOR SoundsGood application allows attackers to store cross site scripting payloads via the 'playlist' POST parameter.

Vendors
asustor
Products
soundsgood
Weakness
CWE-79
Vector
CVSS:3.0/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N

In the news

No ingested article mentions this CVE yet.