← Back

CVE-2022-4596

nvd nist
Published: Dec 18, 2022Modified: Jun 17, 2026

JSON object

Loading...
5.4
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N
Exploitability: 2.3 / Impact: 2.7
Source: NVD

Description

A vulnerability, which was classified as problematic, has been found in Shoplazza 1.1. This issue affects some unknown processing of the file /admin/api/admin/articles/ of the component Add Blog Post Handler. The manipulation of the argument Title leads to cross site scripting. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. The associated identifier of this vulnerability is VDB-216191.

Affected (1)

Products: Shoplazza: Lifestyle
1 product
Lifestyle
Configuration A
1 vulnerable
Vulnerable SoftwareAffected Versions
Version 1.1

References (6)

Source: cna@vuldb.com
Mailing ListThird Party Advisory
Source: cna@vuldb.com
ExploitMailing ListThird Party Advisory
Source: cna@vuldb.com
Permissions RequiredThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Mailing ListThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
ExploitMailing ListThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Permissions RequiredThird Party Advisory

Timeline

No history available yet.