CVE-2015-6494
LOW 3.5EPSS 1.7%
Cross-site scripting (XSS) vulnerability in Infinite Automation Mango Automation 2.5.x and 2.6.x before 2.6.0 build 430 allows remote authenticated users to inject arbitrary web script or HTML via unspecified vectors.
- CVSS v2.0
- 3.5 LOW
AV:N/AC:M/Au:S/C:N/I:P/A:N - EPSS
- 1.75% chance of exploitation in the next 30 days, 76th percentile
- Published
- 2015-10-28
- Updated
- 2024-08-06