CVE-2022-47968: XSS
Published Dec 27, 2022
·Updated
Heimdall Application Dashboard through 2.5.4 allows reflected and stored XSS via "Application name" to the "Add application" page. The stored XSS will be triggered in the "Application list" page.
Affected Software
1 affected component
LinuxServer Heimdall Application Dashboard<=2.5.4
Event History
Dec 27, 2022
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·06:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2022-47968?
CVE-2022-47968 is rated as a moderate risk vulnerability due to the potential for reflected and stored XSS attacks.
2
How do I fix CVE-2022-47968?
To fix CVE-2022-47968, upgrade Heimdall Application Dashboard to version 2.5.5 or later.
3
What types of XSS are associated with CVE-2022-47968?
CVE-2022-47968 allows both reflected and stored XSS via the 'Application name' input.
4
When was CVE-2022-47968 discovered?
CVE-2022-47968 was reported in late 2022.
5
Who is affected by CVE-2022-47968?
Users of Heimdall Application Dashboard versions up to 2.5.4 are affected by CVE-2022-47968.