CVE-2022-4892

A vulnerability was found in MyCMS. It has been classified as problematic. This affects the function build_view of the file lib/gener/view.php of the component Visitors Module. The manipulation of the argument original/converted leads to cross site scripting. It is possible to initiate the attack remotely. The patch is named d64fcba4882a50e21cdbec3eb4a080cb694d26ee. It is recommended to apply a patch to fix this issue. The associated identifier of this vulnerability is VDB-218895.
Configurations

Configuration 1 (hide)

cpe:2.3:a:mycms_project:mycms:*:*:*:*:*:*:*:*

History

11 Apr 2024, 01:17

Type Values Removed Values Added
Summary
  • (es) Se encontró una vulnerabilidad en MyCMS. Ha sido clasificada como problemática. Esto afecta la función build_view del archivo lib/gener/view.php del componente Visitants Module. La manipulación del argumento original/convertido conduce a cross-site scripting. Es posible iniciar el ataque de forma remota. El parche se llama d64fcba4882a50e21cdbec3eb4a080cb694d26ee. Se recomienda aplicar un parche para solucionar este problema. El identificador asociado de esta vulnerabilidad es VDB-218895.

29 Feb 2024, 01:36

Type Values Removed Values Added
New CVE

Information

Published : 2023-01-19 08:15

Updated : 2024-05-17 02:17


NVD link : CVE-2022-4892

Mitre link : CVE-2022-4892

CVE.ORG link : CVE-2022-4892


JSON object : View

Products Affected

mycms_project

  • mycms
CWE
CWE-79

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')