First published: Tue Jan 09 2024(Updated: )
A stored cross-site scripting (XSS) vulnerability in Infoblox NIOS v8.5.2-409296 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the VLAN View Name field.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Infoblox NIOS | =8.5.2-409296 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-28975 is rated as a medium severity vulnerability due to its potential impact on web applications.
To mitigate CVE-2022-28975, upgrade Infoblox NIOS to a version that is not affected by this vulnerability.
CVE-2022-28975 specifically affects Infoblox NIOS version 8.5.2-409296.
CVE-2022-28975 is a stored cross-site scripting (XSS) vulnerability.
With CVE-2022-28975, attackers can execute arbitrary web scripts or HTML on the affected systems.