Multiple W&T Products of the ComServer Series are prone to an XSS attack. An authenticated remote Attacker can execute arbitrary web scripts or HTML via a crafted payload injected into the title of the configuration webpage
References
Link Resource
https://cert.vde.com/de/advisories/VDE-2022-043/ Third Party Advisory
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: CERTVDE

Published: 2022-11-10T11:02:32.615Z

Updated: 2022-11-16T08:53:50.333Z

Reserved: 2022-10-11T13:32:19.672Z


Link: CVE-2022-42786

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2022-11-10T12:15:10.063

Modified: 2023-01-20T14:53:21.557


Link: CVE-2022-42786

JSON object: View

cve-icon Redhat Information

No data.

CWE