First published: Mon Nov 14 2022(Updated: )
A cross-site scripting (XSS) vulnerability in EyouCMS V1.5.9-UTF8-SP1 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the Public Security Record Number text field.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Eyoucms Eyoucms | =1.5.9 | |
=1.5.9 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID is CVE-2022-44390.
The severity of CVE-2022-44390 is medium (5.4).
The vulnerability allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the Public Security Record Number text field.
The vulnerability affects EyouCMS version 1.5.9.
Currently, there is no publicly available fix for CVE-2022-44390. It is recommended to follow the mitigation steps provided in the reference link.