CVE-2022-2266: Reflected XSS University Library Automation System

Published Sep 22, 2022
·
Updated

University Library Automation System developed by Yordam Bilgi Teknolojileri before version 19.2 has an unauthenticated Reflected XSS vulnerability. This has been fixed in the version 19.2

Affected Software

1 affected component
Yordam Library Automation System<19.2

Remediation

Information

Library Automation System module should be updated to the 19.2 version provided by the vendor.

Event History

Sep 22, 2022
CVE Published
via MITRE·08:50 AM
Data Sourced
via MITRE·08:50 AM
RemedyDescriptionSeverityWeakness
Data Sourced
via NVD·09:15 AM
DescriptionSeverityWeaknessAffected Software

Frequently Asked Questions

1

What is CVE-2022-2266?

CVE-2022-2266 is an unauthenticated Reflected XSS vulnerability in the University Library Automation System developed by Yordam Bilgi Teknolojileri before version 19.2.

2

How does CVE-2022-2266 affect the University Library Automation System?

CVE-2022-2266 allows attackers to execute malicious scripts in a victim's web browser, potentially leading to stolen sensitive information or unauthorized actions.

3

Is there a fix available for CVE-2022-2266?

Yes, the vulnerability has been fixed in version 19.2 of the University Library Automation System developed by Yordam Bilgi Teknolojileri.

4

What is the severity of CVE-2022-2266?

CVE-2022-2266 has a severity rating of 6.1, which is considered medium.

5

Where can I find more information about CVE-2022-2266?

You can find more information about CVE-2022-2266 at the following link: [https://www.usom.gov.tr/bildirim/tr-22-0637](https://www.usom.gov.tr/bildirim/tr-22-0637)

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203