A stored XSS in the process overview (bersicht zugewiesener Vorgaenge) in mbsupport openVIVA c2 20220101 allows a remote, authenticated, low-privileged attacker to execute arbitrary code in the victim's browser via name field of a process.
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: mitre

Published: 2023-10-30T00:00:00

Updated: 2023-10-30T21:45:56.464240

Reserved: 2022-09-02T00:00:00


Link: CVE-2022-39172

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2023-10-30T22:15:09.677

Modified: 2023-11-07T23:10:09.880


Link: CVE-2022-39172

JSON object: View

cve-icon Redhat Information

No data.

CWE