First published: Tue May 17 2022(Updated: )
WBCE CMS 1.5.2 is vulnerable to Cross Site Scripting (XSS) via /admin/users/save.php.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Wbce CMS | =1.5.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-30073 is a vulnerability in WBCE CMS 1.5.2 that allows an attacker to perform Cross Site Scripting (XSS) attacks through the /admin/users/save.php page.
CVE-2022-30073 has a severity rating of 5.4, which is considered medium.
CVE-2022-30073 affects WBCE CMS 1.5.2, allowing an attacker to exploit Cross Site Scripting vulnerabilities.
Currently, there is no known fix for CVE-2022-30073. It is recommended to update to a patched version of WBCE CMS when it becomes available.
The Common Weakness Enumeration (CWE) for CVE-2022-30073 is CWE-79, which is the classification for Cross Site Scripting (XSS) vulnerabilities.