Lucene search

K
cvelistMitreCVELIST:CVE-2022-44012
HistoryDec 25, 2022 - 12:00 a.m.

CVE-2022-44012

2022-12-2500:00:00
mitre
www.cve.org
simmeth lieferantenmanager
javascript code execution
encrypted password theft

6 Medium

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

23.3%

An issue was discovered in /DS/LM_API/api/SelectionService/InsertQueryWithActiveRelationsReturnId in Simmeth Lieferantenmanager before 5.6. An attacker can execute JavaScript code in the browser of the victim if a site is loaded. The victim’s encrypted password can be stolen and most likely be decrypted.

6 Medium

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

23.3%

Related for CVELIST:CVE-2022-44012