← back
CVE-2022-4353

LinZhaoguan pb-cms IpUtil.getIpAddr cross site scripting

CVSS 3.5 LOWEPSS 0.4%CWE-707
Vexday Risk Score
8Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS 3.5EPSS 0.4%KEV nãoPoC Nuclei Metasploit Patch
Lifecycle
08 Dec 2022Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
A vulnerability has been found in LinZhaoguan pb-cms 2.0 and classified as problematic. Affected by this vulnerability is the function IpUtil.getIpAddr. The manipulation leads to cross site scripting. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-215113 was assigned to this vulnerability.
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:N
Affected products
LinZhaoguan · pb-cms

Want to know if your infrastructure is exposed to this?

Talk to TrueHacking →