Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2022-66694
HistoryMay 19, 2022 - 12:00 a.m.

IPPlan Cross-Site Scripting Vulnerability

2022-05-1900:00:00
China National Vulnerability Database
www.cnvd.org.cn
14
ipplan
4.92b
cross-site scripting
vulnerability
admin/usermanager.php
remote attacker
arbitrary web script

EPSS

0.001

Percentile

31.2%

IPPlan is a web-based multilingual TCP IP address management (IPAM) software and tracking tool. Simplifying the management of the IP address space, IPPlan version 4.92b is vulnerable to a cross-site scripting vulnerability, which stems from a cross-site scripting (XSS) vulnerability found in admin/usermanager.php. A remote attacker could exploit this vulnerability to inject arbitrary web script or HTML via the userid parameter.

EPSS

0.001

Percentile

31.2%

Related for CNVD-2022-66694