First published: Tue Oct 25 2022(Updated: )
Reflected cross-site scripting (XSS) vulnerabilities in WithSecure through 2022-08-10) exists within the F-Secure Policy Manager due to an unvalidated parameter in the endpoint, which allows remote attackers to provide a malicious input.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Withsecure F-secure Policy Manager | ||
Withsecure F-secure Policy Manager |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-38162 is a reflected cross-site scripting (XSS) vulnerability in WithSecure's F-Secure Policy Manager.
The severity of CVE-2022-38162 is medium, with a CVSS score of 6.1.
CVE-2022-38162 allows remote attackers to provide a malicious input due to an unvalidated parameter in the endpoint of WithSecure's F-Secure Policy Manager.
To fix CVE-2022-38162, WithSecure users should apply the latest security patches and updates provided by the vendor.
More information about CVE-2022-38162 can be found on the official WithSecure website and the security advisories page.