NA

CVE-2022-3073

Published: 14/12/2022 Updated: 16/12/2022
CVSS v3 Base Score: 6.1 | Impact Score: 2.7 | Exploitability Score: 2.8
VMScore: 0

Vulnerability Summary

Quanos "SCHEMA ST4" example web templates in version Bootstrap 2019 v2/2021 v1/2022 v1/2022 SP1 v1 or below are prone to JavaScript injection allowing a remote malicious user to hijack existing sessions to e.g. other web services in the same environment or execute scripts in the users browser environment. The affected script is '*-schema.js'.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

weidmueller 19_iot_md01_lan_h4_s0011_firmware -

weidmueller fp_iot_md01_4eu_s2_00000_firmware -

weidmueller fp_iot_md01_lan_s2_00000_firmware -

weidmueller fp_iot_md01_lan_s2_00011_firmware -

weidmueller fp_iot_md02_4eu_s3_00000_firmware -

weidmueller iot-gw30_firmware

weidmueller iot-gw30-4g-eu_firmware

weidmueller uc20-wl2000-ac_firmware

weidmueller uc20-wl2000-iot_firmware