Security Advisory

CVE-2022-47414

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2023-02-07 21:41:39
Last updated 2025-03-25 14:08:10
Assigner rapid7
State PUBLISHED

Description

If an attacker has access to the console for OpenKM (and is authenticated), a stored XSS vulnerability is reachable in the document "note" functionality.