CVE-2022-23916

Cross-site scripting vulnerability in a-blog cms Ver.2.8.x series versions prior to Ver.2.8.75, Ver.2.9.x series versions prior to Ver.2.9.40, Ver.2.10.x series versions prior to Ver.2.10.44, Ver.2.11.x series versions prior to Ver.2.11.42, and Ver.3.0.x series versions prior to Ver.3.0.1 allows a remote authenticated attacker to inject an arbitrary script via unspecified vectors. This vulnerability is different from CVE-2022-24374.
CVSS

No CVSS.

Configurations

No configuration.

Information

Published : 2022-02-24 15:15

Updated : 2022-02-24 16:02


NVD link : CVE-2022-23916

Mitre link : CVE-2022-23916


JSON object : View

Products Affected

No product.

CWE

No CWE.