CVE-2022-27885: XSS
Published Mar 25, 2022
·Updated
Maccms v10 was discovered to contain multiple reflected cross-site scripting (XSS) vulnerabilities in /admin.php/admin/website/data.html via the select and input parameters.
Affected Software
11 affected components
maccms Maccms=10.0-2021.1000.1081
maccms Maccms=10.0-2022.1000.1099
maccms Maccms=10.0-2022.1000.3001
maccms Maccms=10.0-2022.1000.3002
maccms Maccms=10.0-2022.1000.3004
maccms Maccms=10.0-2022.1000.3005
maccms Maccms=10.0-2022.1000.3025
maccms Maccms=10.0-2022.1000.3026
maccms Maccms=10.0-2022.1000.3027
maccms Maccms=10.0-2022.1000.3028
maccms Maccms=10.0-2022.1000.3029
Event History
Mar 25, 2022
CVE Published
via MITRE·06:50 PM
Data Sourced
via MITRE·06:50 PM
Description
Frequently Asked Questions
1
What is CVE-2022-27885?
CVE-2022-27885 is a vulnerability in Maccms v10 that allows for reflected cross-site scripting (XSS) attacks.
2
How does CVE-2022-27885 impact Maccms v10?
CVE-2022-27885 affects Maccms v10 by enabling attackers to execute malicious scripts in the victim's browser.
3
What is the severity of CVE-2022-27885?
CVE-2022-27885 has a severity rating of medium.
4
How do I fix CVE-2022-27885?
To fix CVE-2022-27885, it is recommended to update Maccms v10 to the latest version available.
5
Where can I find more information about CVE-2022-27885?
More information about CVE-2022-27885 can be found at the following link: [https://github.com/magicblack/maccms10/issues/840](https://github.com/magicblack/maccms10/issues/840)