← Back

CVE-2022-28051

nvd nist
Published: Jun 6, 2022Modified: Nov 21, 2024

JSON object

Loading...
5.4
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N
Exploitability: 2.3 / Impact: 2.7
Source: NVD

Description

The "Add category" functionality inside the "Global Keywords" menu in "SeedDMS" version 6.0.18 and 5.1.25, is prone to stored XSS which allows an attacker to inject malicious javascript code.

Affected (2)

Products: Seeddms: Seeddms
1 product
Seeddms
Configuration A
2 vulnerable
Vulnerable SoftwareAffected Versions
Seeddms
Version 5.1.25
Version 6.0.18

Timeline

No history available yet.