메뉴 건너뛰기

GREATUSER

cve

CVE-2017-12098

관리자 2018.01.25 04:00 조회 수 : 9

An exploitable cross site scripting (XSS) vulnerability exists in the add filter functionality of the rails_admin rails gem version 1.2.0. A specially crafted URL can cause an XSS flaw resulting in an attacker being able to execute arbitrary javascript on the victim's browser. An attacker can phish an authenticated user to trigger this vulnerability.


원문출처 : https://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2017-12098
번호 제목 글쓴이 날짜 조회 수
347 CVE-2017-14025 관리자 2017.11.09 6
346 CVE-2017-7425 관리자 2017.11.09 6
345 CVE-2017-7934 관리자 2017.08.27 6
344 CVE-2017-5685 관리자 2017.04.04 6
343 CVE-2017-5686 관리자 2017.04.04 6
342 CVE-2017-7397 관리자 2017.04.04 6
341 CVE-2017-7407 관리자 2017.04.04 6
340 CVE-2017-7402 관리자 2017.04.04 6
339 CVE-2014-3929 관리자 2017.04.04 6
338 CVE-2014-3928 관리자 2017.04.04 6
337 CVE-2014-3927 관리자 2017.04.04 6
336 CVE-2017-0127 관리자 2017.03.18 6
335 CVE-2017-0136 관리자 2017.03.18 6
334 CVE-2017-0031 관리자 2017.03.18 6
333 CVE-2017-0015 관리자 2017.03.18 6
위로