nZEDb
by nZEDb
CVEs (2)
| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2021-43686 | Med | 0.40 | 6.1 | 0.01 | Dec 2, 2021 | nZEDb v0.4.20 is affected by a Cross Site Scripting (XSS) vulnerability in www/pages/api.php. The exit function will terminate the script and print the message which has the input $_GET['t']. | ||
| CVE-2017-18286 | Med | 0.00 | 5.4 | 0.01 | Jun 5, 2018 | nZEDb v0.7.3.3 has XSS in the 404 error page. |
- risk 0.40cvss 6.1epss 0.01
nZEDb v0.4.20 is affected by a Cross Site Scripting (XSS) vulnerability in www/pages/api.php. The exit function will terminate the script and print the message which has the input $_GET['t'].
- risk 0.00cvss 5.4epss 0.01
nZEDb v0.7.3.3 has XSS in the 404 error page.