ZeroHour

CVE-2022-47877

PoC ×2
CVSS 3.1
5.4 medium
EPSS
3%p85
Published
()
Modified
Description

A Stored cross-site scripting vulnerability in Jedox 2020.2.5 allows remote, authenticated users to inject arbitrary web script or HTML in the Logs page via the log module 'log'.

Vendors
jedox
Products
jedox
Weakness
CWE-79
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N

In the news

No ingested article mentions this CVE yet.