identityserver kayıtları
identityserver üreticisine ait 3 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 0
- Düzeltme kaydı olan
- %0
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Saldırı profili
Tüm kayıtlar
3 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
24İzleyin | CVE-2018-8899İstismar yok | IdentityServer IdentityServer4 1.x before 1.5.3 and 2.x before 2.1.3 does not encode the redirect URI on the authorization response page, whidentityserver · identityserver4 · CWE-79 | Orta6,1 | — | %1,2 | 22 Mar 2018 |
24İzleyin | CVE-2017-12677İstismar yok | IdentityServer3 2.4.x, 2.5.x, and 2.6.x before 2.6.1 has XSS in an Angular expression on the authorize response page, which might allow remoidentityserver · identityserver3 · CWE-79 | Orta6,1 | — | %1,0 | 7 Ağu 2017 |
24İzleyin | CVE-2019-12250İstismar yok | IdentityServer IdentityServer4 through 2.4 has stored XSS via the httpContext to the host/Extensions/RequestLoggerMiddleware.cs LogForErrorCidentityserver · identityserver4 · CWE-79 | Orta6,1 | — | %0,8 | 21 May 2019 |
- CVE-2018-889924İzleyin
IdentityServer IdentityServer4 1.x before 1.5.3 and 2.x before 2.1.3 does not encode the redirect URI on the authorization response page, wh
OrtaCVSS 6,1İstismar yokEPSS %1identityserver · identityserver422 Mar 2018
- CVE-2017-1267724İzleyin
IdentityServer3 2.4.x, 2.5.x, and 2.6.x before 2.6.1 has XSS in an Angular expression on the authorize response page, which might allow remo
OrtaCVSS 6,1İstismar yokEPSS %1identityserver · identityserver37 Ağu 2017
- CVE-2019-1225024İzleyin
IdentityServer IdentityServer4 through 2.4 has stored XSS via the httpContext to the host/Extensions/RequestLoggerMiddleware.cs LogForErrorC
OrtaCVSS 6,1İstismar yokEPSS %1identityserver · identityserver421 May 2019