First published: Thu Sep 29 2022(Updated: )
kkFileView v4.1.0 is vulnerable to Cross Site Scripting (XSS) via the parameter 'errorMsg.'
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
kkFileView | =4.1.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-40879 is a vulnerability in kkFileView v4.1.0 that allows for Cross Site Scripting (XSS) attacks via the 'errorMsg' parameter.
CVE-2022-40879 has a severity level of 6.1 (medium).
CVE-2022-40879 affects kkFileView v4.1.0 and can be exploited through the 'errorMsg' parameter.
To fix CVE-2022-40879, update kkFileView to a version that is not affected by the vulnerability.
Yes, you can find references for CVE-2022-40879 at the following link: https://github.com/kekingcn/kkFileView/issues/389