CVE-2022-26972

Publication date

2022-06-01 11:34:42

Family

mitre

State

PUBLISHED

Description

Barco Control Room Management Suite web application, which is part of TransForm N before 3.14, is exposing a URL /cgi-bin endpoint. The URL parameters are not correctly sanitized, leading to reflected XSS.