Lucene search

K
cvePatchstackCVE-2022-47602
HistoryMar 29, 2023 - 8:15 p.m.

CVE-2022-47602

2023-03-2920:15:07
CWE-79
Patchstack
web.nvd.nist.gov
17
cve-2022-47602
authentication
stored xss
cross-site scripting
joomunited
wp table manager
nvd

CVSS3

6.5

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

LOW

User Interaction

REQUIRED

Scope

CHANGED

Confidentiality Impact

LOW

Integrity Impact

LOW

Availability Impact

LOW

CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:L

EPSS

0.001

Percentile

21.0%

Auth. (contributor+) Stored Cross-Site Scripting (XSS) vulnerability in JoomUnited WP Table Manager plugin <=Β 3.5.2 versions.

Affected configurations

Nvd
Vulners
Node
joomunitedwp_table_managerRange≀3.5.2wordpress
VendorProductVersionCPE
joomunitedwp_table_manager*cpe:2.3:a:joomunited:wp_table_manager:*:*:*:*:*:wordpress:*:*

CNA Affected

[
  {
    "defaultStatus": "unaffected",
    "product": "WP Table Manager",
    "vendor": "JoomUnited",
    "versions": [
      {
        "changes": [
          {
            "at": "3.5.3",
            "status": "unaffected"
          }
        ],
        "lessThanOrEqual": "3.5.2",
        "status": "affected",
        "version": "n/a",
        "versionType": "custom"
      }
    ]
  }
]

CVSS3

6.5

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

LOW

User Interaction

REQUIRED

Scope

CHANGED

Confidentiality Impact

LOW

Integrity Impact

LOW

Availability Impact

LOW

CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:L

EPSS

0.001

Percentile

21.0%

Related for CVE-2022-47602