Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2022-77854
HistoryMay 16, 2022 - 12:00 a.m.

FacturaScripts Cross-Site Scripting Vulnerability () CNVD-2022-77854

2022-05-1600:00:00
China National Vulnerability Database
www.cnvd.org.cn
5
facturascripts
erp
xss
vulnerability
cnvd-2022-77854
attack
cookie theft
account takeover
browser

EPSS

0.001

Percentile

30.0%

FacturaScripts is an ERP software. FacturaScripts versions prior to 2022.07 contain a cross-site scripting vulnerability that could be exploited by attackers to steal a user’s cookie, which could lead to account takeover or any malicious activity in the victim’s browser.

EPSS

0.001

Percentile

30.0%