CVE-2024-9075
CVE-2024-9075
Título es
CVE-2024-9075
Sáb, 21/09/2024 – 23:15
Tipo
CWE-79
Gravedad v2.0
2.10
Gravedad 2.0 Txt
LOW
Título en
CVE-2024-9075
Descripción en
A vulnerability was found in Stirling-Tools Stirling-PDF up to 0.28.3. It has been declared as problematic. This vulnerability affects unknown code of the component Markdown-to-PDF. The manipulation leads to cross site scripting. The attack can be initiated remotely. The complexity of an attack is rather high. The exploitation appears to be difficult. The vendor was contacted early about this disclosure but did not respond in any way.
22/09/2024
22/09/2024
Vector CVSS:3.1
CVSS:3.1/AV:N/AC:H/PR:L/UI:R/S:U/C:N/I:L/A:N
Vector CVSS:2.0
AV:N/AC:H/Au:S/C:N/I:P/A:N
Gravedad 3.1 (CVSS 3.1 Base Score)
2.60
Gravedad 3.1 Txt Gravedad 3.1 (CVSS 3.1 Base Score)
LOW
Referencias
Enviar en el boletín
Off