First published: Tue Jul 26 2022(Updated: )
Inout Blockchain AltExchanger v1.2.1 was discovered to contain a cross-site scripting (XSS) vulnerability via the component /admin/js.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Inoutscripts Blockchain Altexchanger | =1.2.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2022-34988 is classified as medium due to its potential to allow cross-site scripting (XSS) attacks.
To fix CVE-2022-34988, update Inout Blockchain AltExchanger to the latest version and implement proper input validation and escaping for user-generated content.
CVE-2022-34988 affects the /admin/js component of Inout Blockchain AltExchanger v1.2.1.
Yes, CVE-2022-34988 can be exploited remotely by attackers who can inject malicious scripts via XSS.
CVE-2022-34988 can lead to unauthorized access to user sessions and the execution of malicious scripts in the context of a victim's browser.