메뉴 건너뛰기

GREATUSER

cve

CVE-2017-12097

관리자 2018.01.25 04:00 조회 수 : 19

An exploitable cross site scripting (XSS) vulnerability exists in the filter functionality of the delayed_job_web rails gem version 1.4. A specially crafted URL can cause an XSS flaw resulting in an attacker being able to execute arbitrary javascript on the victim's browser. An attacker can phish an authenticated user to trigger this vulnerability.


원문출처 : https://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2017-12097
번호 제목 글쓴이 날짜 조회 수
257 CVE-2017-6573 (mail-masta) 관리자 2017.03.10 21
256 CVE-2017-6570 관리자 2017.03.10 21
255 CVE-2016-3221 관리자 2016.06.17 21
254 CVE-2016-0028 관리자 2016.06.17 21
253 CVE-2018-1045 관리자 2018.01.25 20
252 CVE-2017-14460 관리자 2018.01.25 20
251 CVE-2017-12117 관리자 2018.01.25 20
250 CVE-2017-12115 관리자 2018.01.25 20
249 CVE-2017-7326 관리자 2018.01.25 20
248 CVE-2015-6926 관리자 2018.01.25 20
247 CVE-2017-16615 관리자 2017.11.09 20
246 CVE-2017-2881 관리자 2017.11.09 20
245 CVE-2017-2895 관리자 2017.11.09 20
244 CVE-2017-16563 관리자 2017.11.09 20
243 CVE-2017-16548 관리자 2017.11.09 20
위로