Lucene search

K
cvelistHackeroneCVELIST:CVE-2018-3755
HistoryJun 01, 2018 - 5:00 p.m.

CVE-2018-3755

2018-06-0117:00:00
CWE-79
hackerone
www.cve.org

0.001 Low

EPSS

Percentile

38.0%

XSS in sexstatic <=0.6.2 causes HTML injection in directory name(s) leads to Stored XSS when malicious file is embed with <iframe> element used in directory name.

CNA Affected

[
  {
    "product": "sexstatic",
    "vendor": "HackerOne",
    "versions": [
      {
        "status": "affected",
        "version": "<=0.6.2"
      }
    ]
  }
]

0.001 Low

EPSS

Percentile

38.0%