Zurück zur CVE-Übersicht
CVE-2022-38553
MEDIUM(6.1)CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
Risk Signal Score16/100 — NIEDRIG
- CVSS 6.1 — Mittel
EPSS-Score
2%
Exploit-Wahrscheinlichkeit (30 Tage)
CVSS Score
6.1
Technische Schwere
Beschreibung
Academy Learning Management System before v5.9.1 was discovered to contain a reflected cross-site scripting (XSS) vulnerability via the Search parameter.
Referenzen
- https://codecanyon.net/item/academy-course-based-learning-management-system/2270...
- https://demo.creativeitem.com/academy/home/
- https://demo.creativeitem.com/academy/home/search?query=%22%3E%3Cscript%3Ealert%...
- https://github.com/4websecurity/CVE-2022-38553/blob/main/README.md
- http://academy.com
- https://codecanyon.net/item/academy-course-based-learning-management-system/2270...
- https://demo.creativeitem.com/academy/home/
- https://demo.creativeitem.com/academy/home/search?query=%22%3E%3Cscript%3Ealert%...
- https://github.com/4websecurity/CVE-2022-38553/blob/main/README.md