CVE-2022-45543: XSS
Cross site scripting (XSS) vulnerability in DiscuzX 3.4 allows attackers to execute arbitrary code via the datetline, title, tpp, or username parameters via the audit search.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2022-45543?
The severity of CVE-2022-45543 is medium (6.1).
How does the Cross-Site Scripting (XSS) vulnerability in DiscuzX 3.4 occur?
The Cross-Site Scripting (XSS) vulnerability in DiscuzX 3.4 occurs when attackers exploit the datetline, title, tpp, or username parameters via the audit search.
How can an attacker exploit CVE-2022-45543?
An attacker can exploit CVE-2022-45543 by injecting arbitrary code through the datetline, title, tpp, or username parameters via the audit search.
Is there a fix available for the Cross-Site Scripting (XSS) vulnerability in DiscuzX 3.4 (CVE-2022-45543)?
Yes, a fix is available for the Cross-Site Scripting (XSS) vulnerability in DiscuzX 3.4 (CVE-2022-45543). It is recommended to update to a version that addresses this vulnerability.
Where can I find more information about CVE-2022-45543?
You can find more information about CVE-2022-45543 at the following URL: https://srpopty.github.io/2023/02/15/Vulnerability-Discuz-X3.4-Reflected-XSS-(CVE-2022-45543)/