vendor:
exoops
by:
Unknown
7.5
CVSS
HIGH
Input Validation
20
CWE
Product Name: exoops
Affected Version From: Unknown
Affected Version To: Unknown
Patch Exists: NO
Related CWE:
CPE: a:exoops:exoops
Platforms Tested:
Unknown
Input Validation Vulnerabilities in exoops
Multiple input validation vulnerabilities affect exoops, allowing attackers to carry out cross-site scripting and SQL injection attacks. This can lead to theft of authentication credentials, destruction or disclosure of sensitive data, and other potential attacks.
Mitigation:
The vendor should update exoops to properly sanitize user-supplied input before using it in critical actions.