RSS   Vulnerabilities for
'Firmware analysis and comparison tool'
   RSS

2020-04-02
 
CVE-2020-11499

CWE-79
 

 
Firmware Analysis and Comparison Tool (FACT) 3 has Stored XSS when updating analysis details via a localhost web request, as demonstrated by mishandling of the tags and version fields in helperFunctions/mongo_task_conversion.py.

 


Copyright 2024, cxsecurity.com

 

Back to Top