CVE-2022-37139: XSS
Published Sep 14, 2022
·Updated
Loan Management System version 1.0 suffers from a persistent cross site scripting vulnerability.
Affected Software
2 affected components
Loan Management System Project Loan Management System=1.0
Razormist Loan Management System=1.0
Event History
Sep 14, 2022
CVE Published
via MITRE·03:31 AM
Data Sourced
via MITRE·03:31 AM
Description
Data Sourced
via NVD·11:15 AM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2022-37139?
CVE-2022-37139 is classified as a medium severity persistent cross-site scripting vulnerability.
2
How do I fix CVE-2022-37139?
To fix CVE-2022-37139, ensure that user inputs are properly sanitized and encoded before being rendered on the web application.
3
What software versions are affected by CVE-2022-37139?
CVE-2022-37139 affects version 1.0 of the Loan Management System from both outlined CPE entries.
4
What type of vulnerability is CVE-2022-37139?
CVE-2022-37139 is a persistent cross-site scripting (XSS) vulnerability.
5
Can CVE-2022-37139 allow attackers to inject malicious scripts?
Yes, CVE-2022-37139 can allow attackers to inject malicious scripts that will run in the browser of unsuspecting users.