CVE-2022-27503: XSS
Published Apr 13, 2022
·Updated
Cross-site Scripting (XSS) vulnerability in Citrix StoreFront affects version 1912 before CU5 and version 3.12 before CU9
Affected Software
2 affected components
Citrix StoreFront Server>=3.12<3.12.9000
Citrix StoreFront Server>=1912<1912.0.5000
Remediation
Patch Available
Event History
Apr 13, 2022
CVE Published
via MITRE·05:05 PM
Data Sourced
via MITRE·05:05 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the severity of CVE-2022-27503?
CVE-2022-27503 is classified as a medium severity Cross-site Scripting (XSS) vulnerability.
2
How do I fix CVE-2022-27503?
To fix CVE-2022-27503, upgrade Citrix StoreFront to version 1912 CU5 or later, or version 3.12 CU9 or later.
3
Which versions of Citrix StoreFront are affected by CVE-2022-27503?
CVE-2022-27503 affects Citrix StoreFront versions 1912 before CU5 and version 3.12 before CU9.
4
What type of vulnerability is CVE-2022-27503?
CVE-2022-27503 is a Cross-site Scripting (XSS) vulnerability.
5
What impact does CVE-2022-27503 have on affected systems?
CVE-2022-27503 allows an attacker to inject malicious scripts into web pages viewed by users.