CVE-2022-4554

Published Jan 24, 2023

Last updated 9 months ago

Overview

Description
B2B Customer Ordering System developed by ID Software Project and Consultancy Services before version 1.0.0.347 has an authenticated Reflected XSS vulnerability. This has been fixed in the version 1.0.0.347.
Source
iletisim@usom.gov.tr
NVD status
Analyzed

Risk scores

CVSS 3.1

Type
Primary
Base score
5.4
Impact score
2.7
Exploitability score
2.3
Vector string
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N
Severity
MEDIUM

Weaknesses

iletisim@usom.gov.tr
CWE-79
nvd@nist.gov
CWE-79

Social media

Hype score
Not currently trending

Configurations