4.8
CVSSv3

CVE-2018-10078

Published: 20/04/2018 Updated: 27/03/2021
CVSS v2 Base Score: 3.5 | Impact Score: 2.9 | Exploitability Score: 6.8
CVSS v3 Base Score: 4.8 | Impact Score: 2.7 | Exploitability Score: 1.7
VMScore: 355
Vector: AV:N/AC:M/Au:S/C:N/I:P/A:N

Vulnerability Summary

Cross-site scripting (XSS) vulnerability in Geist WatchDog Console 3.2.2 allows remote authenticated administrators to inject arbitrary web script or HTML via a server description.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

vertiv watchdog console 3.2.2

Exploits

# Exploit Author: bzyo # CVE: CVE-2018-10077, CVE-2018-10078, CVE-2018-10079 # Twitter: @bzyo_ # Exploit Title: Geist WatchDog Console 322 - Multiple Vulnerabilities # Date: 04-17-18 # Vulnerable Software: WatchDog Console - 322 # Vendor Homepage: wwwitwatchdogscom/ # Version: 322 # Software Link: wwwitwatchdogscom/userfile ...
Geist WatchDog Console version 322 suffers from cross site scripting, XML external entity injection, and insecure file permission vulnerabilities ...