6.4
CVE-2024-57369
- EPSS 0.35%
- Veröffentlicht 17.01.2025 20:15:29
- Zuletzt bearbeitet 23.04.2025 21:42:29
- CVE-Watchlists
- Unerledigt
Clickjacking vulnerability in typecho v1.2.1.
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.35% | 0.283 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| CISA-ADP | 6.4 | 0.9 | 5.5 |
CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:U/C:H/I:H/A:L
|
CWE-1021 Improper Restriction of Rendered UI Layers or Frames
The web application does not restrict or incorrectly restricts frame objects or UI layers that belong to another application or domain.
https://github.com/typecho/typecho
https://royblume.github.io/CVE-2024-57369/
https://typecho.org/