CVE-2022-4067: Cross-site Scripting (XSS) - Stored in librenms/librenms
Published Nov 20, 2022
·Updated
Cross-site Scripting (XSS) - Stored in GitHub repository librenms/librenms prior to 22.10.0.
Affected Software
1 affected component
librenms librenms<22.10.0
Remediation
Event History
Nov 20, 2022
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
DescriptionSeverityWeakness
Data Sourced
via NVD·05:15 AM
RemedyDescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is CVE-2022-4067?
CVE-2022-4067 is a vulnerability known as Cross-site Scripting (XSS) - Stored that was found in the GitHub repository librenms/librenms prior to version 22.10.0.
2
What is the severity of CVE-2022-4067?
CVE-2022-4067 has a severity score of 5.4, which is considered medium.
3
Which software versions are affected by CVE-2022-4067?
CVE-2022-4067 affects versions prior to 22.10.0 of the Librenms software.
4
How does CVE-2022-4067 work?
CVE-2022-4067 enables attackers to inject malicious scripts into a web application, which are then executed by unsuspecting users accessing the affected site.
5
How can I fix CVE-2022-4067?
To fix CVE-2022-4067, you should update your Librenms software to version 22.10.0 or later, which contains the necessary security patches.