CVE-2022-0558: Cross-site Scripting (XSS) - Stored in microweber/microweber
Published Feb 10, 2022
·Updated
Cross-site Scripting (XSS) - Stored in Packagist microweber/microweber prior to 1.2.11.
Affected Software
1 affected component
Microweber Microweber<1.2.11
Remediation
Event History
Feb 10, 2022
CVE Published
via MITRE·09:40 AM
Data Sourced
via MITRE·09:40 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2022-0558?
CVE-2022-0558 is classified as a high-severity vulnerability due to its potential for stored cross-site scripting (XSS).
2
How do I fix CVE-2022-0558?
To remediate CVE-2022-0558, upgrade to Microweber version 1.2.11 or later, which contains the necessary security patches.
3
What type of vulnerability is CVE-2022-0558?
CVE-2022-0558 is a stored cross-site scripting (XSS) vulnerability affecting the Microweber application.
4
What versions of Microweber are affected by CVE-2022-0558?
CVE-2022-0558 impacts all versions of Microweber prior to 1.2.11.
5
Can CVE-2022-0558 lead to serious security issues?
Yes, CVE-2022-0558 can allow attackers to execute arbitrary scripts in the context of a user's browser, leading to potential data theft or session hijacking.