CVE-2022-4877

A vulnerability has been found in snoyberg keter up to 1.8.1 and classified as problematic. This vulnerability affects unknown code of the file Keter/Proxy.hs. The manipulation of the argument host leads to cross site scripting. The attack can be initiated remotely. Upgrading to version 1.8.2 is able to address this issue. The name of the patch is d41f3697926b231782a3ad8050f5af1ce5cc40b7. It is recommended to upgrade the affected component. The identifier of this vulnerability is VDB-217444.
References
Configurations

Configuration 1 (hide)

cpe:2.3:a:keter_project:keter:*:*:*:*:*:*:*:*

History

11 Apr 2024, 01:17

Type Values Removed Values Added
Summary
  • (es) Se ha encontrado una vulnerabilidad en snoyberg keter hasta 1.8.1 y se ha clasificada como problemática. Esta vulnerabilidad afecta a un código desconocido del archivo Keter/Proxy.hs. La manipulación del argumento host conduce a cross-site scripting. El ataque se puede iniciar de forma remota. La actualización a la versión 1.8.2 puede solucionar este problema. El nombre del parche es d41f3697926b231782a3ad8050f5af1ce5cc40b7. Se recomienda actualizar el componente afectado. El identificador de esta vulnerabilidad es VDB-217444.

29 Feb 2024, 01:36

Type Values Removed Values Added
New CVE

Information

Published : 2023-01-05 10:15

Updated : 2024-05-17 02:17


NVD link : CVE-2022-4877

Mitre link : CVE-2022-4877

CVE.ORG link : CVE-2022-4877


JSON object : View

Products Affected

keter_project

  • keter
CWE
CWE-79

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')