Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2022-66693
HistoryMay 20, 2022 - 12:00 a.m.

OctoPrint webcam stream test cross-site scripting vulnerability

2022-05-2000:00:00
China National Vulnerability Database
www.cnvd.org.cn
16
octoprint
3d printer
xss
vulnerability
web interface
javascript

EPSS

0.001

Percentile

40.5%

OctoPrint is an application that provides a fast web interface for controlling consumer 3D printers. A cross-site scripting vulnerability exists in versions prior to OctoPrint 1.8.0, which stems from a lack of filtering and escaping of data in the software webcam stream test. An attacker could use this vulnerability to execute JavaScript code on the client side.

EPSS

0.001

Percentile

40.5%