CVE-2022-22834

An issue was discovered in OverIT Geocall before 8.0. An authenticated user who has the Test Trasformazione XSL functionality enabled can exploit a XSLT Injection vulnerability. Attackers could exploit this issue to achieve remote code execution.
Configurations

Configuration 1 (hide)

cpe:2.3:a:overit:geocall:*:*:*:*:*:*:*:*

Information

Published : 2022-03-10 17:45

Updated : 2022-05-09 13:15


NVD link : CVE-2022-22834

Mitre link : CVE-2022-22834


JSON object : View

Products Affected

overit

  • geocall
CWE
CWE-91

XML Injection (aka Blind XPath Injection)