ZeroHour

CVE-2022-4347

PoC
CVSS 3.1
5.4 medium
EPSS
<1%p33
Published
()
Modified
Description

A vulnerability was found in xiandafu beetl-bbs. It has been declared as problematic. Affected by this vulnerability is an unknown functionality of the file WebUtils.java. The manipulation of the argument user leads to cross site scripting. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. The associated identifier of this vulnerability is VDB-215107.

Vendors
beetl-bbs project
Products
beetl-bbs
Weakness
CWE-707
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N

In the news

No ingested article mentions this CVE yet.