6.1
CVSSv3

CVE-2022-38295

Published: 12/09/2022 Updated: 15/09/2022
CVSS v3 Base Score: 6.1 | Impact Score: 2.7 | Exploitability Score: 2.8
VMScore: 0

Vulnerability Summary

Cuppa CMS v1.0 exists to contain a cross-site scripting vulnerability at /table_manager/view/cu_user_groups. This vulnerability allows malicious users to execute arbitrary web scripts or HTML via a crafted payload injected into the Name field under the Add New Group function.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

cuppacms cuppacms 1.0