ZeroHour

CVE-2022-38771

CVSS 3.1
9.8 critical
EPSS
1%p63
Published
()
Modified
Description

The mobile application in Transtek Mojodat FAM (Fixed Asset Management) 2.4.6 allows remote attackers to send SCRIPT tags as injected input to the API request.

Vendors
transtek
Products
mojodat fixed asset management
Weakness
CWE-89
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.