CVE-2022-40879: XSS
Published Sep 29, 2022
·Updated
kkFileView v4.1.0 is vulnerable to Cross Site Scripting (XSS) via the parameter 'errorMsg.'
Affected Software
1 affected component
keking kkFileView=4.1.0
Event History
Sep 29, 2022
CVE Published
via MITRE·04:22 PM
Data Sourced
via MITRE·04:22 PM
Description
Data Sourced
via NVD·05:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is CVE-2022-40879?
CVE-2022-40879 is a vulnerability in kkFileView v4.1.0 that allows for Cross Site Scripting (XSS) attacks via the 'errorMsg' parameter.
2
How severe is CVE-2022-40879?
CVE-2022-40879 has a severity level of 6.1 (medium).
3
How does CVE-2022-40879 affect kkFileView?
CVE-2022-40879 affects kkFileView v4.1.0 and can be exploited through the 'errorMsg' parameter.
4
How can I fix CVE-2022-40879?
To fix CVE-2022-40879, update kkFileView to a version that is not affected by the vulnerability.
5
Are there any references for CVE-2022-40879?
Yes, you can find references for CVE-2022-40879 at the following link: https://github.com/kekingcn/kkFileView/issues/389