CVE-2022-36325 - CERT CVE
ID CVE-2022-36325
Sažetak Affected devices do not properly sanitize data introduced by an user when rendering the web interface. This could allow an authenticated remote attacker with administrative privileges to inject code and lead to a DOM-based XSS.
Reference
CVSS
Base: 6.8
Impact: 5.9
Exploitability:0.9
Pristup
VektorSloženostAutentikacija
NETWORK LOW HIGH
Impact
PovjerljivostCjelovitostDostupnost
HIGH HIGH HIGH
CVSS vektor CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:U/C:H/I:H/A:H
Zadnje važnije ažuriranje 14-04-2026 - 09:16
Objavljeno 10-08-2022 - 12:15