Lucene search

K
cveMitreCVE-2022-43143
HistoryNov 21, 2022 - 9:15 p.m.

CVE-2022-43143

2022-11-2121:15:11
CWE-79
mitre
web.nvd.nist.gov
26
2
cve-2022-43143
cross-site scripting
xss
security vulnerability
beekeeper studio
nvd

CVSS3

9.6

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

REQUIRED

Scope

CHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H

AI Score

7.7

Confidence

High

EPSS

0.002

Percentile

52.5%

A cross-site scripting (XSS) vulnerability in Beekeeper Studio v3.6.6 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the error modal container.

Affected configurations

Nvd
Node
beekeeperstudiobeekeeper-studioMatch3.6.6
VendorProductVersionCPE
beekeeperstudiobeekeeper-studio3.6.6cpe:2.3:a:beekeeperstudio:beekeeper-studio:3.6.6:*:*:*:*:*:*:*

Social References

More

CVSS3

9.6

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

REQUIRED

Scope

CHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H

AI Score

7.7

Confidence

High

EPSS

0.002

Percentile

52.5%

Related for CVE-2022-43143