CVE-2022-28479

CVE-2022-28479

SeedDMS versions 6.0.18 and 5.1.25 and below are vulnerable to stored XSS. An attacker with admin privileges can inject the payload inside the "Role management" menu and then trigger the payload by loading the "Users management" menu

Source: CVE-2022-28479

답글 남기기

이메일 주소는 공개되지 않습니다. 필수 필드는 *로 표시됩니다