Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2022-38295

Опубликовано: 12 сент. 2022
Источник: nvd
CVSS3: 6.1
EPSS Средний

Описание

Cuppa CMS v1.0 was discovered to contain a cross-site scripting vulnerability at /table_manager/view/cu_user_groups. This vulnerability allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the Name field under the Add New Group function.

Ссылки

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:cuppacms:cuppacms:1.0:*:*:*:*:*:*:*

EPSS

Процентиль: 97%
0.33662
Средний

6.1 Medium

CVSS3

Дефекты

CWE-79

Связанные уязвимости

CVSS3: 6.1
github
больше 3 лет назад

Cuppa CMS v1.0 was discovered to contain a cross-site scripting vulnerability at /table_manager/view/cu_user_groups. This vulnerability allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the Name field under the Add New Group function.

EPSS

Процентиль: 97%
0.33662
Средний

6.1 Medium

CVSS3

Дефекты

CWE-79