Filtered by vendor Viva-project Subscriptions
Filtered by product Openviva Subscriptions
Total 1 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2022-39172 1 Viva-project 1 Openviva 2024-09-09 5.4 Medium
A stored XSS in the process overview (bersicht zugewiesener Vorgaenge) in mbsupport openVIVA c2 20220101 allows a remote, authenticated, low-privileged attacker to execute arbitrary code in the victim's browser via name field of a process.