CVE-2022-1682
- EPSS 0.3%
- Veröffentlicht 12.05.2022 09:15:13
- Zuletzt bearbeitet 21.11.2024 06:41:14
Reflected Xss using url based payload in GitHub repository neorazorx/facturascripts prior to 2022.07. Xss can use to steal user's cookies which lead to Account takeover or do any malicious activity in victim's browser
CVE-2022-1571
- EPSS 0.32%
- Veröffentlicht 04.05.2022 11:15:08
- Zuletzt bearbeitet 21.11.2024 06:40:59
Cross-site scripting - Reflected in Create Subaccount in GitHub repository neorazorx/facturascripts prior to 2022.07. This vulnerability can be arbitrarily executed javascript code to steal user'cookie, perform HTTP request, get content of `same orig...
CVE-2022-1514
- EPSS 0.4%
- Veröffentlicht 28.04.2022 16:15:08
- Zuletzt bearbeitet 21.11.2024 06:40:52
Stored XSS via upload plugin functionality in zip format in GitHub repository neorazorx/facturascripts prior to 2022.06. Cross-site scripting attacks can have devastating consequences. Code injected into a vulnerable application can exfiltrate data o...
CVE-2022-1457
- EPSS 0.37%
- Veröffentlicht 25.04.2022 10:15:09
- Zuletzt bearbeitet 21.11.2024 06:40:45
Store XSS in title parameter executing at EditUser Page & EditProducto page in GitHub repository neorazorx/facturascripts prior to 2022.04. Cross-site scripting attacks can have devastating consequences. Code injected into a vulnerable application ca...