CVE-2022-44355: XSS
Published Nov 29, 2022
·Updated
SolarView Compact 7.0 is vulnerable to Cross-site Scripting (XSS) via /networktest.php.
Affected Software
4 affected components
Contec Solarview Compact Firmware=7.0
Contec SolarView Compact
All of the following
Contec Solarview Compact Firmware=7.0
Contec SolarView Compact
Event History
Nov 29, 2022
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·05:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is CVE-2022-44355?
CVE-2022-44355 is a vulnerability found in SolarView Compact 7.0 that allows an attacker to perform Cross-site Scripting (XSS) attacks via the /network_test.php endpoint.
2
What is the severity of CVE-2022-44355?
CVE-2022-44355 has a severity rating of 6.1 (Medium).
3
How does CVE-2022-44355 affect SolarView Compact?
CVE-2022-44355 affects SolarView Compact 7.0, allowing for Cross-site Scripting (XSS) attacks through the /network_test.php endpoint.
4
What is the Common Weakness Enumeration (CWE) ID of CVE-2022-44355?
The Common Weakness Enumeration (CWE) ID of CVE-2022-44355 is 79.
5
Is SolarView Compact 7.0 the only affected version?
Yes, SolarView Compact 7.0 is the only affected version of the software.