| |
Vulnerability CVE-2022-3073
Published: 2022-12-14
| Description: |
Quanos "SCHEMA ST4" example web templates in version Bootstrap 2019 v2/2021 v1/2022 v1/2022 SP1 v1 or below are prone to JavaScript injection allowing a remote attacker to hijack existing sessions to e.g. other web services in the same environment or execute scripts in the users browser environment. The affected script is '*-schema.js'. |
Type:
CWE-79 (Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting'))
References: |
https://cert.vde.com/de/advisories/VDE-2022-056/
|
|
|
closedb();
?>
Copyright 2026, cxsecurity.com
|
|
|