CVE-2022-4593

A vulnerability was found in retra-system. It has been classified as problematic. Affected is an unknown function. The manipulation leads to cross site scripting. It is possible to launch the attack remotely. The name of the patch is a6d94ab88f4a6f631a14c59b72461140fb57ae1f. It is recommended to apply a patch to fix this issue. VDB-216186 is the identifier assigned to this vulnerability.
References
Link Resource
https://github.com/retra/retra-system/commit/a6d94ab88f4a6f631a14c59b72461140fb57ae1f Patch Third Party Advisory
https://vuldb.com/?id.216186 Permissions Required Third Party Advisory
https://github.com/retra/retra-system/commit/a6d94ab88f4a6f631a14c59b72461140fb57ae1f Patch Third Party Advisory
https://vuldb.com/?id.216186 Permissions Required Third Party Advisory
Configurations

Configuration 1 (hide)

cpe:2.3:a:retra-system_project:retra-system:*:*:*:*:*:*:*:*

History

21 Nov 2024, 07:35

Type Values Removed Values Added
CVSS v2 : unknown
v3 : 6.1
v2 : unknown
v3 : 3.5
Summary
  • (es) Se encontró una vulnerabilidad en retra-system. Ha sido clasificada como problemática. Una función desconocida es afectada por esta función. La manipulación conduce a Cross-Site Scripting. Es posible lanzar el ataque de forma remota. El nombre del parche es a6d94ab88f4a6f631a14c59b72461140fb57ae1f. Se recomienda aplicar un parche para solucionar este problema. VDB-216186 es el identificador asignado a esta vulnerabilidad.
References () https://github.com/retra/retra-system/commit/a6d94ab88f4a6f631a14c59b72461140fb57ae1f - Patch, Third Party Advisory () https://github.com/retra/retra-system/commit/a6d94ab88f4a6f631a14c59b72461140fb57ae1f - Patch, Third Party Advisory
References () https://vuldb.com/?id.216186 - Permissions Required, Third Party Advisory () https://vuldb.com/?id.216186 - Permissions Required, Third Party Advisory

Information

Published : 2022-12-18 08:15

Updated : 2024-11-21 07:35


NVD link : CVE-2022-4593

Mitre link : CVE-2022-4593

CVE.ORG link : CVE-2022-4593


JSON object : View

Products Affected

retra-system_project

  • retra-system
CWE
CWE-707

Improper Neutralization

CWE-79

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')