Description
nopCommerce 4.50.1 is vulnerable to Cross Site Scripting (XSS). An attacker (role customer) can inject javascript code to First name or Last name at Customer Info.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2022-32892 | nopCommerce 4.50.1 is vulnerable to Cross Site Scripting (XSS). An attacker (role customer) can inject javascript code to First name or Last name at Customer Info. |
References
| Link | Providers |
|---|---|
| https://github.com/nopSolutions/nopCommerce/issues/6191 |
|
History
No history.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-03T05:56:15.455Z
Reserved: 2022-04-04T00:00:00.000Z
Link: CVE-2022-28448
No data.
Status : Modified
Published: 2022-04-26T20:15:35.780
Modified: 2024-11-21T06:57:22.313
Link: CVE-2022-28448
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD