CVE-2022-4593

A vulnerability was found in retra-system. It has been classified as problematic. Affected is an unknown function. The manipulation leads to cross site scripting. It is possible to launch the attack remotely. The name of the patch is a6d94ab88f4a6f631a14c59b72461140fb57ae1f. It is recommended to apply a patch to fix this issue. VDB-216186 is the identifier assigned to this vulnerability.
References
Link Resource
https://github.com/retra/retra-system/commit/a6d94ab88f4a6f631a14c59b72461140fb57ae1f Patch Third Party Advisory
https://vuldb.com/?id.216186 Permissions Required Third Party Advisory
https://github.com/retra/retra-system/commit/a6d94ab88f4a6f631a14c59b72461140fb57ae1f Patch Third Party Advisory
https://vuldb.com/?id.216186 Permissions Required Third Party Advisory
Configurations

Configuration 1 (hide)

cpe:2.3:a:retra-system_project:retra-system:*:*:*:*:*:*:*:*

History

21 Nov 2024, 07:35

Type Values Removed Values Added
CVSS v2 : unknown
v3 : 6.1
v2 : unknown
v3 : 3.5
References () https://github.com/retra/retra-system/commit/a6d94ab88f4a6f631a14c59b72461140fb57ae1f - Patch, Third Party Advisory () https://github.com/retra/retra-system/commit/a6d94ab88f4a6f631a14c59b72461140fb57ae1f - Patch, Third Party Advisory
References () https://vuldb.com/?id.216186 - Permissions Required, Third Party Advisory () https://vuldb.com/?id.216186 - Permissions Required, Third Party Advisory

22 Dec 2022, 16:42

Type Values Removed Values Added
References (N/A) https://vuldb.com/?id.216186 - (N/A) https://vuldb.com/?id.216186 - Permissions Required, Third Party Advisory
References (N/A) https://github.com/retra/retra-system/commit/a6d94ab88f4a6f631a14c59b72461140fb57ae1f - (N/A) https://github.com/retra/retra-system/commit/a6d94ab88f4a6f631a14c59b72461140fb57ae1f - Patch, Third Party Advisory
CWE CWE-707
CWE-74
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 6.1
CPE cpe:2.3:a:retra-system_project:retra-system:*:*:*:*:*:*:*:*

19 Dec 2022, 02:27

Type Values Removed Values Added
New CVE

Information

Published : 2022-12-18 08:15

Updated : 2024-11-21 07:35


NVD link : CVE-2022-4593

Mitre link : CVE-2022-4593

CVE.ORG link : CVE-2022-4593


JSON object : View

Products Affected

retra-system_project

  • retra-system
CWE
CWE-707

Improper Neutralization

CWE-79

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')