Beveiligingsadvies

CVE-2022-39035

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2022-09-28 03:25:40
Laatst bijgewerkt 2025-05-21 14:50:02
Toegewezen door twcert
CVSS-score 6.1
Status PUBLISHED

Beschrijving

Smart eVision has insufficient filtering for special characters in the POST Data parameter in the specific function. An unauthenticated remote attacker can inject JavaScript to perform XSS (Stored Cross-Site Scripting) attack.