CVE-2022-35151: XSS
Published Aug 17, 2022
·Updated
kkFileView v4.1.0 was discovered to contain multiple cross-site scripting (XSS) vulnerabilities via the urls and currentUrl parameters at /controller/OnlinePreviewController.java.
Affected Software
1 affected component
keking kkFileView=4.1.0
Remediation
Patch Available
Event History
Aug 17, 2022
CVE Published
via MITRE·09:13 PM
Data Sourced
via MITRE·09:13 PM
Description
Frequently Asked Questions
1
What is the vulnerability ID for kkFileView v4.1.0?
The vulnerability ID for kkFileView v4.1.0 is CVE-2022-35151.
2
What is the severity of CVE-2022-35151?
The severity of CVE-2022-35151 is medium with a CVSS score of 6.1.
3
What is the affected software for CVE-2022-35151?
The affected software for CVE-2022-35151 is kkFileView v4.1.0.
4
How does CVE-2022-35151 affect kkFileView v4.1.0?
CVE-2022-35151 affects kkFileView v4.1.0 with multiple cross-site scripting (XSS) vulnerabilities via the urls and currentUrl parameters in the OnlinePreviewController.java file.
5
Is there any fix available for CVE-2022-35151?
At this time, there is no available fix for CVE-2022-35151. It is recommended to monitor the official GitHub repository for any updates or patches.