CVE-2022-45938: XSS
An issue was discovered in Comcast Defined Technologies microeisbss through 2021. An attacker can inject a stored XSS payload in the Device ID field under Inventory Management to achieve Remote Code Execution and privilege escalation..
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2022-45938?
CVE-2022-45938 is considered critical due to the potential for remote code execution and privilege escalation.
How do I fix CVE-2022-45938?
To fix CVE-2022-45938, update your Comcast Defined Technologies microeisbss software to a version that addresses this vulnerability.
What types of attacks can exploit CVE-2022-45938?
CVE-2022-45938 can be exploited through stored XSS payload injections in the Device ID field.
Which software versions are affected by CVE-2022-45938?
CVE-2022-45938 affects all versions of Comcast Defined Technologies microeisbss up to and including 2021.
What are the potential impacts of CVE-2022-45938?
The potential impacts of CVE-2022-45938 include unauthorized remote code execution and escalation of user privileges.