CVE-2022-36746: XSS
LibreNMS v22.6.0 was discovered to contain a cross-site scripting (XSS) vulnerability via the component oxidized-cfg-check.inc.php.
Other sources
LibreNMS version 22.6.0 was discovered to contain a cross-site scripting (XSS) vulnerability via the component oxidized-cfg-check.inc.php.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is CVE-2022-36746?
CVE-2022-36746 is a cross-site scripting (XSS) vulnerability discovered in LibreNMS v22.6.0 via the component oxidized-cfg-check.inc.php.
How severe is CVE-2022-36746?
CVE-2022-36746 has a severity rating of 6.1, which is considered medium.
What software versions are affected by CVE-2022-36746?
LibreNMS v22.6.0 is the only affected version of the software.
How can I fix the CVE-2022-36746 vulnerability?
To fix the CVE-2022-36746 vulnerability, it is recommended to update to a patched version of LibreNMS.
Is there any additional reference about CVE-2022-36746?
Yes, you can find more information about CVE-2022-36746 at the following reference: [GitHub Pull Request #14126](https://github.com/librenms/librenms/pull/14126).