CVE-2022-4864: Argument Injection in froxlor/froxlor
Argument Injection in GitHub repository froxlor/froxlor prior to 2.0.0-beta1.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is CVE-2022-4864?
CVE-2022-4864 is an argument injection vulnerability in the GitHub repository froxlor/froxlor prior to version 2.0.0-beta1.
What is the severity of CVE-2022-4864?
CVE-2022-4864 has a severity level of medium with a CVSS score of 5.4.
What software is affected by CVE-2022-4864?
The software affected by CVE-2022-4864 includes Froxlor versions up to 0.10.38.3 and froxlor/froxlor composer package up to version 2.0.0-beta1.
How can I fix CVE-2022-4864?
To fix CVE-2022-4864, update Froxlor to version 2.0.0-beta1 or apply the relevant patch from the official GitHub repository.
Where can I find more information about CVE-2022-4864?
More information about CVE-2022-4864 can be found at the following references: [GitHub commit](https://github.com/froxlor/froxlor/commit/f2485ecd9aab8da544b5e12891d82ae6fcff5fc7), [Huntr.dev](https://huntr.dev/bounties/b7140709-8f84-4f19-9463-78669fa2175b), and [NVD](https://nvd.nist.gov/vuln/detail/CVE-2022-4864).