Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2022-76230
HistoryMay 09, 2022 - 12:00 a.m.

FacturaScripts Cross-Site Scripting Vulnerability (CNVD-2022-76230)

2022-05-0900:00:00
China National Vulnerability Database
www.cnvd.org.cn
9
facturascripts erp software
cross-site scripting
vulnerability
attackers
arbitrary javascript code
user cookies
http requests

EPSS

0.001

Percentile

30.0%

FacturaScripts is an ERP software. cross-site scripting vulnerability exists in versions prior to FacturaScripts 2022.07, which can be exploited by attackers to execute arbitrary javascript code, steal user cookies, execute HTTP requests, obtain "same-origin " page content, etc.

EPSS

0.001

Percentile

30.0%