ZeroHour

CVE-2022-3895

CVSS 3.1
6.1 medium
EPSS
<1%p20
Published
()
Modified
Description

Some UI elements of the Common User Interface Component are not properly sanitizing output and therefore prone to output arbitrary HTML (XSS).

Vendors
hallowelt
Products
bluespice, common user interface
Weakness
CWE-79
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N

In the news

No ingested article mentions this CVE yet.