ZeroHour

CVE-2022-34834

PoC
CVSS 3.1
4.8 medium
EPSS
<1%p30
Published
()
Modified
Description

An issue was discovered in VERMEG AgileReporter 21.3. Attackers can gain privileges via an XSS payload in an Add Comment action to the Activity log.

Vendors
vermeg
Products
agile reporter
Weakness
CWE-79
Vector
CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:N

In the news

No ingested article mentions this CVE yet.