Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:35392
HistoryMay 05, 2022 - 11:47 a.m.

Cross-site Scripting (XSS)

2022-05-0511:47:09
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
8
xss
facturascripts
model fields
cookie theft
http request
same origin

EPSS

0.001

Percentile

30.0%

facturascripts is vulnerable to cross-site scripting. An attacker is able to inject malicious code via model fields, allowing stealing of user’s cookie, performing HTTP request and getting content of same origin page, and so on.

EPSS

0.001

Percentile

30.0%