CVE-2022-42001

Cross-site Scripting (XSS) vulnerability in BlueSpiceBookshelf extension of BlueSpice allows user with regular account and edit permissions to inject arbitrary HTML into the book navigation.
Advertisement

NeevaHost hosting service

Configurations

Configuration 1 (hide)

cpe:2.3:a:hallowelt:bluespice:*:*:*:*:*:*:*:*

Information

Published : 2022-11-15 07:15

Updated : 2022-11-16 11:43


NVD link : CVE-2022-42001

Mitre link : CVE-2022-42001


JSON object : View

CWE
CWE-79

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')

Advertisement

dedicated server usa

Products Affected

hallowelt

  • bluespice