CVE-2022-3562: Cross-site Scripting (XSS) - Stored in librenms/librenms
Published Nov 20, 2022
·Updated
Cross-site Scripting (XSS) - Stored in GitHub repository librenms/librenms prior to 22.10.0.
Affected Software
1 affected component
librenms librenms<22.10.0
Remediation
Event History
Nov 20, 2022
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is CVE-2022-3562?
CVE-2022-3562 is a vulnerability that allows attackers to store malicious code in the Librenms GitHub repository.
2
How does CVE-2022-3562 affect the software?
CVE-2022-3562 affects versions of Librenms prior to 22.10.0, allowing for cross-site scripting (XSS) attacks.
3
What is the severity of CVE-2022-3562?
CVE-2022-3562 has a severity keyword of 'medium' and a severity value of 5.4.
4
How do I fix CVE-2022-3562?
To fix CVE-2022-3562, update to version 22.10.0 or above of Librenms.
5
Where can I find more information about CVE-2022-3562?
More information about CVE-2022-3562 can be found in the GitHub commit and the Huntr.dev bounty page.