CVE-2022-4336: XSS
Published Dec 9, 2022
·Updated
In BAOTA linux panel there exists a stored xss vulnerability attackers can use to obtain sensitive information via the log analysis feature.
Affected Software
1 affected component
bt BAOTA>=7.9.4<=7.9.5
Event History
Dec 9, 2022
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
DescriptionWeakness
Data Sourced
via NVD·06:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2022-4336?
CVE-2022-4336 is classified as a stored XSS vulnerability which can lead to the exposure of sensitive information.
2
How do I fix CVE-2022-4336?
To mitigate CVE-2022-4336, upgrade BAOTA Linux panel to a version higher than 7.9.5.
3
What type of attack can be executed using CVE-2022-4336?
CVE-2022-4336 allows attackers to execute stored cross-site scripting (XSS) attacks.
4
Which versions of BAOTA Linux panel are affected by CVE-2022-4336?
CVE-2022-4336 affects BAOTA Linux panel versions between 7.9.4 and 7.9.5.
5
What features are exploited in CVE-2022-4336?
Attackers exploit the log analysis feature in the BAOTA Linux panel to carry out the stored XSS vulnerability.