Vulnerability CVE-2022-39035


Published: 2022-09-28

Description:
Smart eVision has insufficient filtering for special characters in the POST Data parameter in the specific function. An unauthenticated remote attacker can inject JavaScript to perform XSS (Stored Cross-Site Scripting) attack.

 References:
https://www.twcert.org.tw/tw/cp-132-6572-5c2c8-1.html

Copyright 2026, cxsecurity.com

 

Back to Top