Lucene search

K
f5F5F5:K17341495
HistoryMay 04, 2022 - 12:00 a.m.

K17341495 : Traffix SDC Configuration utility vulnerability CVE-2022-27880

2022-05-0400:00:00
my.f5.com
20
cross-site scripting
traffix sdc
configuration utility
cve-2022-27880

AI Score

5.1

Confidence

High

EPSS

0.001

Percentile

22.7%

Security Advisory Description

A stored Cross-Site Scripting (XSS) vulnerability exists in an undisclosed page of the Traffix SDC Configuration utility that allows an attacker to execute JavaScript in the context of the currently logged-in user. (CVE-2022-27880)

Impact

An authenticated attacker may exploit this vulnerability by storing malicious HTML or JavaScript code in the Traffix SDC Configuration utility. If successful, an attacker can run JavaScript in the context of the currently logged-in user.

AI Score

5.1

Confidence

High

EPSS

0.001

Percentile

22.7%

Related for F5:K17341495